CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
18411 | CVE-2006-2307 | Candidate | Cross-site scripting (XSS) vulnerability in Website Baker CMS before 2.6.4 allows remote attackers to inject arbitrary web script or HTML via a user display name. | Assigned (20060511) | None (candidate not yet proposed) | View | |
83947 | CVE-2015-6670 | Candidate | ownCloud Server before 7.0.8, 8.0.x before 8.0.6, and 8.1.x before 8.1.1 does not properly check ownership of calendars, which allows remote authenticated users to read arbitrary calendars via the calid parameter to apps/calendar/export.php. | Assigned (20150825) | None (candidate not yet proposed) | View | |
18667 | CVE-2006-2563 | Candidate | The cURL library (libcurl) in PHP 4.4.2 and 5.1.4 allows attackers to bypass safe mode and read files via a file:// request containing null characters. | Assigned (20060523) | None (candidate not yet proposed) | View | |
84203 | CVE-2015-6926 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20150914) | None (candidate not yet proposed) | View | |
18923 | CVE-2006-2819 | Candidate | PHP remote file inclusion vulnerability in Wiki.php in Barnraiser Igloo 0.1.9 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the c_node[class_path] parameter. | Assigned (20060605) | None (candidate not yet proposed) | View |
Page 18689 of 20943, showing 5 records out of 104715 total, starting on record 93441, ending on 93445