CVE List

Id CVE No. Status Description Phase Votes Comments Actions
21235  CVE-2006-5131  Candidate  module/shout/jafshout.php (aka the shoutbox) in ph03y3nk just another flat file (JAF) CMS 4.0 RC1 allows remote attackers to execute arbitrary code within sections bounded by "<?php" and "?>", possibly due to a static code injection vulnerability involving admin/data_inc.php.  Assigned (20061002)  None (candidate not yet proposed)    View
86771  CVE-2016-0475  Candidate  Unspecified vulnerability in the Java SE, Java SE Embedded, and JRockit components in Oracle Java SE 8u66; Java SE Embedded 8u65; and JRockit R28.3.8 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Libraries.  Assigned (20151209)  None (candidate not yet proposed)    View
21491  CVE-2006-5387  Candidate  PHP remote file inclusion vulnerability in mods/iai/includes/constants.php in the PlusXL 20_272 and earlier phpBB module allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.  Assigned (20061018)  None (candidate not yet proposed)    View
87027  CVE-2016-0731  Candidate  The File Browser View in Apache Ambari before 2.2.1 allows remote authenticated administrators to read arbitrary files via a file: URL in the WebHDFS URL configuration.  Assigned (20151216)  None (candidate not yet proposed)    View
21747  CVE-2006-5643  Candidate  Cross-site scripting (XSS) vulnerability in search_de.html in foresite CMS allows remote attackers to inject arbitrary web script or HTML via the query parameter.  Assigned (20061031)  None (candidate not yet proposed)    View

Page 18810 of 20943, showing 5 records out of 104715 total, starting on record 94046, ending on 94050

Actions