CVE List

Id CVE No. Status Description Phase Votes Comments Actions
20718  CVE-2006-4614  Candidate  PDAapps Verichat for Pocket PC 1.30bh stores usernames and passwords in plaintext in the Windows Mobile registry, which allows local users to obtain sensitive information via keys under HKEY_CURRENT_USERSoftwarePDAappsVeriChat.  Assigned (20060906)  None (candidate not yet proposed)    View
86254  CVE-2015-8977  Candidate  MyBB (aka MyBulletinBoard) before 1.6.18 and 1.8.x before 1.8.6 and MyBB Merge System before 1.8.6 allow remote attackers to obtain the installation path via vectors involving error log files.  Assigned (20161117)  None (candidate not yet proposed)    View
20974  CVE-2006-4870  Candidate  Multiple PHP remote file inclusion vulnerabilities in AEDating 4.1, and possibly earlier versions, allow remote attackers to execute arbitrary PHP code via a URL in the dir[inc] parameter in (1) inc/design.inc.php or (2) inc/admin_design.inc.php.  Assigned (20060919)  None (candidate not yet proposed)    View
86510  CVE-2016-0214  Candidate  IBM Tivoli Endpoint Manager could allow a remote attacker to upload arbitrary files. A remote attacker could exploit this vulnerability to upload a malicious file. The only way that file would be executed would be through a phishing attack to trick an unsuspecting victim to execute the file.  Assigned (20151208)  None (candidate not yet proposed)    View
21230  CVE-2006-5126  Candidate  PHP remote file inclusion vulnerability in index.php in John Himmelman (aka DaRk2k1) PowerPortal 1.3a allows remote attackers to execute arbitrary PHP code via a URL in the file_name[] parameter.  Assigned (20061002)  None (candidate not yet proposed)    View

Page 18931 of 20943, showing 5 records out of 104715 total, starting on record 94651, ending on 94655

Actions