CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
83684 | CVE-2015-6407 | Candidate | Cisco Emergency Responder 10.5(3.10000.9) allows remote attackers to upload files to arbitrary locations via a crafted parameter, aka Bug ID CSCuv25501. | Assigned (20150817) | None (candidate not yet proposed) | View | |
18404 | CVE-2006-2300 | Candidate | Multiple SQL injection vulnerabilities in EImagePro allow remote attackers to execute arbitrary SQL commands via the (1) CatID parameter to subList.asp, (2) SubjectID parameter to imageList.asp, or (3) Pic parameter to view.asp. | Assigned (20060511) | None (candidate not yet proposed) | View | |
83940 | CVE-2015-6663 | Candidate | Cross-site scripting (XSS) vulnerability in the Client form in the Device Inspector page in SAP Afaria 7 allows remote attackers to inject arbitrary web script or HTML via crafted client name data, aka SAP Security Note 2152669. | Assigned (20150824) | None (candidate not yet proposed) | View | |
18660 | CVE-2006-2556 | Candidate | Cross-site scripting (XSS) vulnerability in Florian Amrhein NewsPortal before 0.37, and possibly TR Newsportal (TRanx rebuilded), allows remote attackers to inject arbitrary web script or HTML via unknown vectors. | Assigned (20060523) | None (candidate not yet proposed) | View | |
84196 | CVE-2015-6919 | Candidate | Cross-site scripting (XSS) vulnerability in the googleSearch (CSE) (com_googlesearch_cse) component 3.0.2 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the q parameter to index.php. | Assigned (20150911) | None (candidate not yet proposed) | View |
Page 18742 of 20943, showing 5 records out of 104715 total, starting on record 93706, ending on 93710