CVE List

Id CVE No. Status Description Phase Votes Comments Actions
17393  CVE-2006-1289  Candidate  Multiple SQL injection vulnerabilities in Milkeyway Captive Portal 0.1 and 0.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) username, (2) password, (3) team, (4) level, (5) status, (6) teamname, and (7) teamlead parameters in (a) auth.php; the (8) username, (9) action, and (10) filter parameters in (b) authuser.php; the (11) username parameter in (c) utils.php; the (12) id and (13) date parameters in (d) traffic.php; the (14) username parameter in (e) userstatistics.php; and the (15) USERNAME and (16) PASSWORD parameters in a cookie to (f) chgpwd.php.  Assigned (20060319)  None (candidate not yet proposed)    View
82929  CVE-2015-5652  Candidate  Untrusted search path vulnerability in python.exe in Python through 3.5.0 on Windows allows local users to gain privileges via a Trojan horse readline.pyd file in the current working directory. NOTE: the vendor says "It was determined that this is a longtime behavior of Python that cannot really be altered at this point."  Assigned (20150724)  None (candidate not yet proposed)    View
17649  CVE-2006-1545  Candidate  Direct static code injection vulnerability in admin/config.php in vscripts (aka Kuba Kunkiewicz) VNews 1.2 allows remote authenticated administrators to execute code by inserting the code into variables that are stored in admin/config.php.  Assigned (20060330)  None (candidate not yet proposed)    View
83185  CVE-2015-5908  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150806)  None (candidate not yet proposed)    View
17905  CVE-2006-1801  Candidate  Cross-site scripting (XSS) vulnerability in planetsearchplus.php in planetSearch+ allows remote attackers to inject arbitrary web script or HTML via the search_exp parameter.  Assigned (20060417)  None (candidate not yet proposed)    View

Page 19165 of 20943, showing 5 records out of 104715 total, starting on record 95821, ending on 95825

Actions