CVE List

Id CVE No. Status Description Phase Votes Comments Actions
18916  CVE-2006-2812  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in index.php in Dominios Europa PICRATE (aka TAL RateMyPic) 1.0 allow remote attackers to inject arbitrary web script or HTML via a javascript URI in the SRC attribute of an IMG element in the (1) name (aka nick), (2) email, and (3) comment boxes; and via the (4) id parameter.  Assigned (20060605)  None (candidate not yet proposed)    View
84452  CVE-2015-7175  Candidate  The XULContentSinkImpl::AddText function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 might allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via unknown vectors, related to an "overflow."  Assigned (20150916)  None (candidate not yet proposed)    View
19172  CVE-2006-3068  Candidate  IBM DB2 Universal Database (UDB) before 8.2 FixPak 12 allows remote attackers to cause a denial of service (application crash) by sending "incorrect information ... regarding the package name/creator," which leads to a "memory overwrite."  Assigned (20060619)  None (candidate not yet proposed)    View
84708  CVE-2015-7431  Candidate  Cross-site scripting (XSS) vulnerability in Queue Watcher in IBM Sterling B2B Integrator 5.2 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.  Assigned (20150929)  None (candidate not yet proposed)    View
19428  CVE-2006-3324  Candidate  The Automatic Downloading option in the id3 Quake 3 Engine and the Icculus Quake 3 Engine (ioquake3) before revision 804 allows remote attackers to overwrite arbitrary files in the quake3 directory (fs_homepath cvar) via a long string of filenames, as contained in the neededpaks buffer.  Assigned (20060630)  None (candidate not yet proposed)    View

Page 18743 of 20943, showing 5 records out of 104715 total, starting on record 93711, ending on 93715

Actions