CVE List

Id CVE No. Status Description Phase Votes Comments Actions
20757  CVE-2006-4653  Candidate  (1) Amazing Little Poll and (2) Amazing Little Picture Poll store sensitive information under the web root with insufficient access control, which allows remote attackers to read the admin password via a direct request for the lp_settings file (lp_settings.inc or lp_settings.php).  Assigned (20060908)  None (candidate not yet proposed)    View
86293  CVE-2015-9016  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170328)  None (candidate not yet proposed)    View
21013  CVE-2006-4909  Candidate  Cross-site scripting (XSS) vulnerability in Cisco Guard DDoS Mitigation Appliance before 5.1(6), when anti-spoofing is enabled, allows remote attackers to inject arbitrary web script or HTML via certain character sequences in a URL that are not properly handled when the appliance sends a meta-refresh.  Assigned (20060920)  None (candidate not yet proposed)    View
86549  CVE-2016-0253  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20151208)  None (candidate not yet proposed)    View
21269  CVE-2006-5165  Candidate  PHP remote file inclusion vulnerability in inc/functions.inc.php in Skrypty PPA Gallery 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the config[ppa_root_path] parameter.  Assigned (20061003)  None (candidate not yet proposed)    View

Page 1723 of 20943, showing 5 records out of 104715 total, starting on record 8611, ending on 8615

Actions