CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
82919 | CVE-2015-5642 | Candidate | Multiple SQL injection vulnerabilities in ICZ MATCHA INVOICE before 2.5.7 allow remote authenticated users to execute arbitrary SQL commands via unspecified vectors. | Assigned (20150724) | None (candidate not yet proposed) | View | |
17639 | CVE-2006-1535 | Candidate | Cross-site scripting (XSS) vulnerability in login.php in Phoetux.net PhxContacts 0.93.1 beta and earlier allows remote attackers to inject arbitrary web script or HTML via the m parameter. | Assigned (20060330) | None (candidate not yet proposed) | View | |
83175 | CVE-2015-5898 | Candidate | CFNetwork in Apple iOS before 9 relies on the hardware UID for its cache encryption key, which makes it easier for physically proximate attackers to obtain sensitive information by obtaining this UID. | Assigned (20150806) | None (candidate not yet proposed) | View | |
17895 | CVE-2006-1791 | Candidate | Directory traversal vulnerability in acc.php in QuickBlogger 1.4 allows remote attackers to read or include arbitrary local files via the request parameter. NOTE: this issue can also produce resultant XSS when the associated include statement fails. | Assigned (20060414) | None (candidate not yet proposed) | View | |
83431 | CVE-2015-6154 | Candidate | Microsoft Internet Explorer 7 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Microsoft Browser Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6150. | Assigned (20150814) | None (candidate not yet proposed) | View |
Page 18966 of 20943, showing 5 records out of 104715 total, starting on record 94826, ending on 94830