CVE List

Id CVE No. Status Description Phase Votes Comments Actions
20983  CVE-2006-4879  Candidate  SQL injection vulnerability in profile.php in David Bennett PHP-Post (PHPp) 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the user parameter.  Assigned (20060919)  None (candidate not yet proposed)    View
86519  CVE-2016-0223  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20151208)  None (candidate not yet proposed)    View
21239  CVE-2006-5135  Candidate  Multiple PHP remote file inclusion vulnerabilities in A-Blog 2 allow remote attackers to execute arbitrary PHP code via a URL in the (1) open_box, (2) middle_box, and (3) close_box parameters in (a) sources/myaccount.php; the (4) navigation_end parameter in (b) navigation/search.php and (c) navigation/donation.php; and the (6) navigation_start and (7) navigation_middle parameters in navigation/donation.php, (d) navigation/latestnews.php, and (e) navigation/links.php; different vectors than CVE-2006-5092.  Assigned (20061002)  None (candidate not yet proposed)    View
86775  CVE-2016-0479  Candidate  Unspecified vulnerability in the Oracle Business Intelligence Enterprise Edition component in Oracle Fusion Middleware 11.1.1.7.0, 11.1.1.9.0, and 12.2.1.0.0 allows remote attackers to affect confidentiality and integrity via vectors related to Analytics Scorecard.  Assigned (20151209)  None (candidate not yet proposed)    View
21495  CVE-2006-5391  Candidate  Xfire 1.64 and earlier allows remote attackers to cause a denial of service (client application crash) via a long string to UDP port 25777.  Assigned (20061018)  None (candidate not yet proposed)    View

Page 19118 of 20943, showing 5 records out of 104715 total, starting on record 95586, ending on 95590

Actions