CVE List

Id CVE No. Status Description Phase Votes Comments Actions
21269  CVE-2006-5165  Candidate  PHP remote file inclusion vulnerability in inc/functions.inc.php in Skrypty PPA Gallery 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the config[ppa_root_path] parameter.  Assigned (20061003)  None (candidate not yet proposed)    View
86805  CVE-2016-0509  Candidate  Unspecified vulnerability in the Oracle Internet Expenses component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors related to AP Web Utilities.  Assigned (20151209)  None (candidate not yet proposed)    View
21525  CVE-2006-5421  Candidate  WSN Forum 1.3.4 and earlier allows remote attackers to execute arbitrary PHP code via a modified pathname in the pathtoconfig parameter that points to an avatar image that contains PHP code, which is then accessed from prestart.php. NOTE: this issue has been labeled remote file inclusion, but that label only applies to the attack, not the underlying vulnerability.  Assigned (20061019)  None (candidate not yet proposed)    View
87061  CVE-2016-0765  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in eshop-orders.php in the eShop plugin 6.3.14 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) page or (2) action parameter.  Assigned (20151216)  None (candidate not yet proposed)    View
21781  CVE-2006-5677  Candidate  resmom/start_exec.c in pbs_mom in TORQUE Resource Manager 2.0.0p8 and earlier allows local users to create arbitrary files via a symlink attack on (1) a job output file in /usr/spool/PBS/spool and possibly (2) a job file in /usr/spool/PBS/mom_priv/jobs.  Assigned (20061102)  None (candidate not yet proposed)    View

Page 1683 of 20943, showing 5 records out of 104715 total, starting on record 8411, ending on 8415

Actions