CVE List

Id CVE No. Status Description Phase Votes Comments Actions
17944  CVE-2006-1840  Candidate  Multiple format string vulnerabilities in Empire Server before 4.3.1 allow attackers to cause a denial of service (crash) via the (1) load, (2) spy and (3) bomb functions.  Assigned (20060419)  None (candidate not yet proposed)    View
83480  CVE-2015-6203  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150814)  None (candidate not yet proposed)    View
18200  CVE-2006-2096  Candidate  plug.php in Land Down Under (LDU) 802 and earlier allows remote attackers to obtain sensitive information via an invalid (1) month or (2) year parameter, which reveals the path in an error message.  Assigned (20060429)  None (candidate not yet proposed)    View
83736  CVE-2015-6459  Candidate  Absolute path traversal vulnerability in the download feature in FileDownloadServlet in GE Digital Energy MDS PulseNET and MDS PulseNET Enterprise before 3.1.5 allows remote attackers to read or delete arbitrary files via a full pathname.  Assigned (20150817)  None (candidate not yet proposed)    View
18456  CVE-2006-2352  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in IPswitch WhatsUp Professional 2006 and WhatsUp Professional 2006 Premium allow remote attackers to inject arbitrary web script or HTML via unknown vectors in (1) NmConsole/Tools.asp and (2) NmConsole/DeviceSelection.asp. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20060514)  None (candidate not yet proposed)    View

Page 1909 of 20943, showing 5 records out of 104715 total, starting on record 9541, ending on 9545

Actions