CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
21993 | CVE-2006-5889 | Candidate | SQL injection vulnerability in printLog.php in BrewBlogger (BB) 1.3.1 allows remote attackers to execute arbitrary SQL commands via the id parameter. | Assigned (20061114) | None (candidate not yet proposed) | View | |
87529 | CVE-2016-10035 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20161223) | None (candidate not yet proposed) | View | |
22249 | CVE-2006-6145 | Candidate | CRYPTOCard CRYPTO-Server before 6.4.56 stores LDAP credentials in plaintext in UninstallerDatainstallvariables.properties, which has insecure permissions and allows local users to obtain the credentials. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information. | Assigned (20061128) | None (candidate not yet proposed) | View | |
87785 | CVE-2016-10268 | Candidate | tools/tiffcp.c in LibTIFF 4.0.7 allows remote attackers to cause a denial of service (integer underflow and heap-based buffer under-read) or possibly have unspecified other impact via a crafted TIFF image, related to "READ of size 78490" and libtiff/tif_unix.c:115:23. | Assigned (20170324) | None (candidate not yet proposed) | View | |
22505 | CVE-2006-6401 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in mystats.php in MyStats 1.0.8 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) connexion, (2) by, and (3) details parameter. | Assigned (20061209) | None (candidate not yet proposed) | View |
Page 19163 of 20943, showing 5 records out of 104715 total, starting on record 95811, ending on 95815