CVE List

Id CVE No. Status Description Phase Votes Comments Actions
17431  CVE-2006-1327  Candidate  SQL injection vulnerability in reg.php in SoftBB 0.1 allows remote attackers to execute arbitrary SQL commands via the mail parameter.  Assigned (20060320)  None (candidate not yet proposed)    View
82967  CVE-2015-5690  Candidate  The management console on Symantec Web Gateway (SWG) appliances with software before 5.2.2 DB 5.0.0.1277 allows remote authenticated users to bypass intended access restrictions and execute arbitrary commands by leveraging a "redirect."  Assigned (20150728)  None (candidate not yet proposed)    View
17687  CVE-2006-1583  Candidate  Cross-site scripting (XSS) vulnerability in index.php in Warcraft III Replay Parser for PHP 1.8c allows remote attackers to inject arbitrary web script or HTML via the page parameter. NOTE: post-disclosure analysis by CVE suggests that the "page" parameter is not used in this product, and "id" might be the affected parameter.  Assigned (20060402)  None (candidate not yet proposed)    View
83223  CVE-2015-5946  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150806)  None (candidate not yet proposed)    View
17943  CVE-2006-1839  Candidate  PHP remote file inclusion vulnerability in language.php in PHP Album 0.3.2.3, when register_globals is enabled, allows remote attackers to execute arbitrary code via an FTP URL in the data_dir parameter, which satisfies the file_exists function call.  Assigned (20060419)  None (candidate not yet proposed)    View

Page 1831 of 20943, showing 5 records out of 104715 total, starting on record 9151, ending on 9155

Actions