CVE List

Id CVE No. Status Description Phase Votes Comments Actions
18709  CVE-2006-2605  Candidate  Cross-site scripting (XSS) vulnerability in DSChat 1.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the chatbox, probably involving the ctext parameter to send.php.  Assigned (20060525)  None (candidate not yet proposed)    View
84245  CVE-2015-6968  Candidate  Multiple incomplete blacklist vulnerabilities in the serendipity_isActiveFile function in include/functions_images.inc.php in Serendipity before 2.0.2 allow remote authenticated users to execute arbitrary PHP code by uploading a file with a (1) .pht or (2) .phtml extension.  Assigned (20150916)  None (candidate not yet proposed)    View
18965  CVE-2006-2861  Candidate  SQL injection vulnerability in index.php in Particle Wiki 1.0.2 and earlier allows remote attackers to execute arbitrary SQL commands via the version parameter.  Assigned (20060606)  None (candidate not yet proposed)    View
84501  CVE-2015-7224  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150917)  None (candidate not yet proposed)    View
19221  CVE-2006-3117  Candidate  Heap-based buffer overflow in OpenOffice.org (aka StarOffice) 1.1.x up to 1.1.5 and 2.0.x before 2.0.3 allows user-assisted attackers to execute arbitrary code via a crafted OpenOffice XML document that is not properly handled by (1) Calc, (2) Draw, (3) Impress, (4) Math, or (5) Writer, aka "File Format / Buffer Overflow Vulnerability."  Assigned (20060621)  None (candidate not yet proposed)    View

Page 1679 of 20943, showing 5 records out of 104715 total, starting on record 8391, ending on 8395

Actions