CVE List

Id CVE No. Status Description Phase Votes Comments Actions
22249  CVE-2006-6145  Candidate  CRYPTOCard CRYPTO-Server before 6.4.56 stores LDAP credentials in plaintext in UninstallerDatainstallvariables.properties, which has insecure permissions and allows local users to obtain the credentials. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20061128)  None (candidate not yet proposed)    View
87785  CVE-2016-10268  Candidate  tools/tiffcp.c in LibTIFF 4.0.7 allows remote attackers to cause a denial of service (integer underflow and heap-based buffer under-read) or possibly have unspecified other impact via a crafted TIFF image, related to "READ of size 78490" and libtiff/tif_unix.c:115:23.  Assigned (20170324)  None (candidate not yet proposed)    View
22505  CVE-2006-6401  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in mystats.php in MyStats 1.0.8 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) connexion, (2) by, and (3) details parameter.  Assigned (20061209)  None (candidate not yet proposed)    View
88041  CVE-2016-1222  Candidate  Cross-site scripting (XSS) vulnerability in Kobe Beauty php-contact-form before 2016-05-18 allows remote attackers to inject arbitrary web script or HTML via a crafted URI.  Assigned (20151226)  None (candidate not yet proposed)    View
22761  CVE-2006-6657  Candidate  The if_clone_list function in NetBSD-current before 20061027, NetBSD 3.0 and 3.0.1 before 20061027, and NetBSD 2.x before 20061119 allows local users to read potentially sensitive, uninitialized stack memory via unspecified vectors.  Assigned (20061219)  None (candidate not yet proposed)    View

Page 19134 of 20943, showing 5 records out of 104715 total, starting on record 95666, ending on 95670

Actions