CVE List

Id CVE No. Status Description Phase Votes Comments Actions
83684  CVE-2015-6407  Candidate  Cisco Emergency Responder 10.5(3.10000.9) allows remote attackers to upload files to arbitrary locations via a crafted parameter, aka Bug ID CSCuv25501.  Assigned (20150817)  None (candidate not yet proposed)    View
18404  CVE-2006-2300  Candidate  Multiple SQL injection vulnerabilities in EImagePro allow remote attackers to execute arbitrary SQL commands via the (1) CatID parameter to subList.asp, (2) SubjectID parameter to imageList.asp, or (3) Pic parameter to view.asp.  Assigned (20060511)  None (candidate not yet proposed)    View
83940  CVE-2015-6663  Candidate  Cross-site scripting (XSS) vulnerability in the Client form in the Device Inspector page in SAP Afaria 7 allows remote attackers to inject arbitrary web script or HTML via crafted client name data, aka SAP Security Note 2152669.  Assigned (20150824)  None (candidate not yet proposed)    View
18660  CVE-2006-2556  Candidate  Cross-site scripting (XSS) vulnerability in Florian Amrhein NewsPortal before 0.37, and possibly TR Newsportal (TRanx rebuilded), allows remote attackers to inject arbitrary web script or HTML via unknown vectors.  Assigned (20060523)  None (candidate not yet proposed)    View
84196  CVE-2015-6919  Candidate  Cross-site scripting (XSS) vulnerability in the googleSearch (CSE) (com_googlesearch_cse) component 3.0.2 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the q parameter to index.php.  Assigned (20150911)  None (candidate not yet proposed)    View

Page 18742 of 20943, showing 5 records out of 104715 total, starting on record 93706, ending on 93710

Actions