CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
19703 | CVE-2006-3599 | Candidate | SQL injection vulnerability in the Nuke Advanced Classifieds module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the id_ads parameter in an EditAds op. | Assigned (20060714) | None (candidate not yet proposed) | View | |
85239 | CVE-2015-7962 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20151023) | None (candidate not yet proposed) | View | |
19959 | CVE-2006-3855 | Candidate | The ifx_load_internal function in IBM Informix Dynamic Server (IDS) allows remote authenticated users to execute arbitrary C code via the DllMain or _init function in a library, aka "C code UDR." | Assigned (20060726) | None (candidate not yet proposed) | View | |
85495 | CVE-2015-8218 | Candidate | The decode_uncompressed function in libavcodec/faxcompr.c in FFmpeg before 2.8.2 does not validate uncompressed runs, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted CCITT FAX data. | Assigned (20151116) | None (candidate not yet proposed) | View | |
20215 | CVE-2006-4111 | Candidate | Ruby on Rails before 1.1.5 allows remote attackers to execute Ruby code with "severe" or "serious" impact via a File Upload request with an HTTP header that modifies the LOAD_PATH variable, a different vulnerability than CVE-2006-4112. | Assigned (20060814) | None (candidate not yet proposed) | View |
Page 19116 of 20943, showing 5 records out of 104715 total, starting on record 95576, ending on 95580