CVE List

Id CVE No. Status Description Phase Votes Comments Actions
21746  CVE-2006-5642  Candidate  Unspecified vulnerability in NmnLogger 1.0.0 and earlier has unknown impact and attack vectors related to configuration of mesasge drivers.  Assigned (20061031)  None (candidate not yet proposed)    View
87282  CVE-2016-0986  Candidate  Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0960, CVE-2016-0961, CVE-2016-0962, CVE-2016-0989, CVE-2016-0992, CVE-2016-1002, and CVE-2016-1005.  Assigned (20151222)  None (candidate not yet proposed)    View
22002  CVE-2006-5898  Candidate  Directory traversal vulnerability in localization/languages.lib.php3 in PhpMyChat 0.14.5 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the ChatPath parameter.  Assigned (20061115)  None (candidate not yet proposed)    View
87538  CVE-2016-10043  Candidate  An issue was discovered in Radisys MRF Web Panel (SWMS) 9.0.1. The MSM_MACRO_NAME POST parameter in /swms/ms.cgi was discovered to be vulnerable to OS command injection attacks. It is possible to use the pipe character (|) to inject arbitrary OS commands and retrieve the output in the application"s responses. Attackers could execute unauthorized commands, which could then be used to disable the software, or read, write, and modify data for which the attacker does not have permissions to access directly. Since the targeted application is directly executing the commands instead of the attacker, any malicious activities may appear to come from the application or the application"s owner (apache user).  Assigned (20161226)  None (candidate not yet proposed)    View
22258  CVE-2006-6154  Candidate  PHP remote file inclusion vulnerability in addcode.php in HIOX Star Rating System Script (HSRS) 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the hm parameter.  Assigned (20061128)  None (candidate not yet proposed)    View

Page 19251 of 20943, showing 5 records out of 104715 total, starting on record 96251, ending on 96255

Actions