CVE List

Id CVE No. Status Description Phase Votes Comments Actions
22253  CVE-2006-6149  Candidate  SQL injection vulnerability in index.asp in JiRos FAQ Manager 1.0 allows remote attackers to execute arbitrary SQL commands via the tID parameter.  Assigned (20061128)  None (candidate not yet proposed)    View
87789  CVE-2016-10271  Candidate  tools/tiffcrop.c in LibTIFF 4.0.7 allows remote attackers to cause a denial of service (heap-based buffer over-read and buffer overflow) or possibly have unspecified other impact via a crafted TIFF image, related to "READ of size 1" and libtiff/tif_fax3.c:413:13.  Assigned (20170324)  None (candidate not yet proposed)    View
22509  CVE-2006-6405  Candidate  BitDefender Mail Protection for SMB 2.0 allows remote attackers to bypass virus detection by inserting invalid characters into base64 encoded content in a multipart/mixed MIME file, as demonstrated with the EICAR test file.  Assigned (20061209)  None (candidate not yet proposed)    View
88045  CVE-2016-1226  Candidate  Cross-site scripting (XSS) vulnerability in Trend Micro Internet Security 8 and 10 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20151226)  None (candidate not yet proposed)    View
22765  CVE-2006-6661  Candidate  Variable overwrite vulnerability in blog.php in PHP-Update 2.7 and earlier allows remote attackers to overwrite arbitrary program variables and execute arbitrary PHP code via multiple vectors that use the extract function, as demonstrated by the (1) f, (2) newmessage, (3) newusername, (4) adminuser, and (5) permission parameters.  Assigned (20061220)  None (candidate not yet proposed)    View

Page 18854 of 20943, showing 5 records out of 104715 total, starting on record 94266, ending on 94270

Actions