CVE List

Id CVE No. Status Description Phase Votes Comments Actions
23278  CVE-2006-7174  Candidate  PHP remote file inclusion vulnerability in includes/functions.php in the Dimension module of phpBB allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter. NOTE: this may be the same issue as CVE-2006-5235.  Assigned (20070321)  None (candidate not yet proposed)    View
88814  CVE-2016-1995  Candidate  HPE System Management Homepage before 7.5.4 allows remote attackers to execute arbitrary code via unspecified vectors.  Assigned (20160122)  None (candidate not yet proposed)    View
23534  CVE-2007-0177  Candidate  Cross-site scripting (XSS) vulnerability in the AJAX module in MediaWiki before 1.6.9, 1.7 before 1.7.2, 1.8 before 1.8.3, and 1.9 before 1.9.0rc2, when wgUseAjax is enabled, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20070110)  None (candidate not yet proposed)    View
89070  CVE-2016-2251  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2016. Notes: none.  Assigned (20160208)  None (candidate not yet proposed)    View
23790  CVE-2007-0433  Candidate  Unspecified vulnerability in BEA AquaLogic Enterprise Security 2.0 through 2.0 SP2, 2.1 through 2.1 SP1, and 2.2, when using Active Directory LDAP for authentication, allows remote authenticated users to access the server even after the account has been disabled.  Assigned (20070122)  None (candidate not yet proposed)    View

Page 18935 of 20943, showing 5 records out of 104715 total, starting on record 94671, ending on 94675

Actions