CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
17638 | CVE-2006-1534 | Candidate | Multiple SQL injection vulnerabilities in Null news allow remote attackers to execute arbitrary SQL commands via (1) the user_email parameter in (a) lostpass.php, and the (2) user_email and (3) user_username parameters in (b) sub.php and (c) unsub.php. | Assigned (20060330) | None (candidate not yet proposed) | View | |
83174 | CVE-2015-5897 | Candidate | The Address Book framework in Apple OS X before 10.11 allows local users to gain privileges by using an environment variable to inject code into processes that rely on this framework. | Assigned (20150806) | None (candidate not yet proposed) | View | |
17894 | CVE-2006-1790 | Candidate | A regression fix in Mozilla Firefox 1.0.7 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the InstallTrigger.install method, which leads to memory corruption. | Assigned (20060414) | None (candidate not yet proposed) | View | |
83430 | CVE-2015-6153 | Candidate | Microsoft Internet Explorer 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Microsoft Browser Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6140, CVE-2015-6142, CVE-2015-6143, CVE-2015-6158, CVE-2015-6159, and CVE-2015-6160. | Assigned (20150814) | None (candidate not yet proposed) | View | |
18150 | CVE-2006-2046 | Candidate | Multiple SQL injection vulnerabilities in Application Dynamics Cartweaver ColdFusion 2.16.11 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) category and (2) keywords parameters in (a) Results.cfm, and the (3) ProdID parameter in (b) Details.cfm. | Assigned (20060426) | None (candidate not yet proposed) | View |
Page 18885 of 20943, showing 5 records out of 104715 total, starting on record 94421, ending on 94425