CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
22253 | CVE-2006-6149 | Candidate | SQL injection vulnerability in index.asp in JiRos FAQ Manager 1.0 allows remote attackers to execute arbitrary SQL commands via the tID parameter. | Assigned (20061128) | None (candidate not yet proposed) | View | |
87789 | CVE-2016-10271 | Candidate | tools/tiffcrop.c in LibTIFF 4.0.7 allows remote attackers to cause a denial of service (heap-based buffer over-read and buffer overflow) or possibly have unspecified other impact via a crafted TIFF image, related to "READ of size 1" and libtiff/tif_fax3.c:413:13. | Assigned (20170324) | None (candidate not yet proposed) | View | |
22509 | CVE-2006-6405 | Candidate | BitDefender Mail Protection for SMB 2.0 allows remote attackers to bypass virus detection by inserting invalid characters into base64 encoded content in a multipart/mixed MIME file, as demonstrated with the EICAR test file. | Assigned (20061209) | None (candidate not yet proposed) | View | |
88045 | CVE-2016-1226 | Candidate | Cross-site scripting (XSS) vulnerability in Trend Micro Internet Security 8 and 10 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20151226) | None (candidate not yet proposed) | View | |
22765 | CVE-2006-6661 | Candidate | Variable overwrite vulnerability in blog.php in PHP-Update 2.7 and earlier allows remote attackers to overwrite arbitrary program variables and execute arbitrary PHP code via multiple vectors that use the extract function, as demonstrated by the (1) f, (2) newmessage, (3) newusername, (4) adminuser, and (5) permission parameters. | Assigned (20061220) | None (candidate not yet proposed) | View |
Page 18854 of 20943, showing 5 records out of 104715 total, starting on record 94266, ending on 94270