CVE List

Id CVE No. Status Description Phase Votes Comments Actions
84743  CVE-2015-7466  Candidate  Lifecycle Query Engine (LQE) in IBM Jazz Reporting Service (JRS) 6.0 before 6.0.0-Rational-CLM-ifix005 allows remote authenticated users to conduct LDAP injection attacks, and consequently bypass intended query restrictions or modify the LDAP directory, via unspecified vectors.  Assigned (20150929)  None (candidate not yet proposed)    View
19463  CVE-2006-3359  Candidate  Multiple SQL injection vulnerabilities in index.php in NewsPHP 2006 PRO allow remote attackers to inject arbitrary web script or HTML via the (1) words, (2) id, (3) topmenuitem, and (4) cat_id parameters in (a) index.php; and the (5) category parameter in (b) inc/rss_feed.php.  Assigned (20060706)  None (candidate not yet proposed)    View
84999  CVE-2015-7722  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20151006)  None (candidate not yet proposed)    View
19719  CVE-2006-3615  Candidate  Multiple PHP remote file inclusion vulnerabilities in Phorum 5.1.14, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via unspecified vectors related to an uninitialized variable.  Assigned (20060714)  None (candidate not yet proposed)    View
85255  CVE-2015-7978  Candidate  NTP before 4.2.8p6 and 4.3.0 before 4.3.90 allows a remote attackers to cause a denial of service (stack exhaustion) via an ntpdc relist command, which triggers recursive traversal of the restriction list.  Assigned (20151023)  None (candidate not yet proposed)    View

Page 1727 of 20943, showing 5 records out of 104715 total, starting on record 8631, ending on 8635

Actions