CVE List

Id CVE No. Status Description Phase Votes Comments Actions
82919  CVE-2015-5642  Candidate  Multiple SQL injection vulnerabilities in ICZ MATCHA INVOICE before 2.5.7 allow remote authenticated users to execute arbitrary SQL commands via unspecified vectors.  Assigned (20150724)  None (candidate not yet proposed)    View
17639  CVE-2006-1535  Candidate  Cross-site scripting (XSS) vulnerability in login.php in Phoetux.net PhxContacts 0.93.1 beta and earlier allows remote attackers to inject arbitrary web script or HTML via the m parameter.  Assigned (20060330)  None (candidate not yet proposed)    View
83175  CVE-2015-5898  Candidate  CFNetwork in Apple iOS before 9 relies on the hardware UID for its cache encryption key, which makes it easier for physically proximate attackers to obtain sensitive information by obtaining this UID.  Assigned (20150806)  None (candidate not yet proposed)    View
17895  CVE-2006-1791  Candidate  Directory traversal vulnerability in acc.php in QuickBlogger 1.4 allows remote attackers to read or include arbitrary local files via the request parameter. NOTE: this issue can also produce resultant XSS when the associated include statement fails.  Assigned (20060414)  None (candidate not yet proposed)    View
83431  CVE-2015-6154  Candidate  Microsoft Internet Explorer 7 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Microsoft Browser Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6150.  Assigned (20150814)  None (candidate not yet proposed)    View

Page 18966 of 20943, showing 5 records out of 104715 total, starting on record 94826, ending on 94830

Actions