CVE List

Id CVE No. Status Description Phase Votes Comments Actions
17645  CVE-2006-1541  Candidate  SQL injection vulnerability in Default.asp in EzASPSite 2.0 RC3 and earlier allows remote attackers to execute arbitrary SQL commands and obtain the SHA1 hash of the admin password via the Scheme parameter.  Assigned (20060330)  None (candidate not yet proposed)    View
83181  CVE-2015-5904  Candidate  Safari in Apple iOS before 9 allows remote attackers to spoof the relationship between URLs and web content via a crafted web site.  Assigned (20150806)  None (candidate not yet proposed)    View
17901  CVE-2006-1797  Candidate  The kernel in NetBSD-current before September 28, 2005 allows local users to cause a denial of service (system crash) by using the SIOCGIFALIAS ioctl to gather information on a non-existent alias of a network interface, which causes a NULL pointer dereference.  Assigned (20060417)  None (candidate not yet proposed)    View
83437  CVE-2015-6160  Candidate  Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6140, CVE-2015-6142, CVE-2015-6143, CVE-2015-6153, CVE-2015-6158, and CVE-2015-6159.  Assigned (20150814)  None (candidate not yet proposed)    View
18157  CVE-2006-2053  Candidate  Multiple SQL injection vulnerabilities in QuickEStore 7.9 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the OrderID parameter in (a) shipping.cfm and (b) checkout.cfm, (2) ItemID parameter in (c) proddetail.cfm, (3) SubCatID parameter in (d) index.cfm, the (4) CategoryID parameter in (e) prodpage.cfm, and (5) ProdID parameter in (f) Details.cfm. NOTE: these issues can also be exploited for path disclosure.  Assigned (20060426)  None (candidate not yet proposed)    View

Page 19447 of 20943, showing 5 records out of 104715 total, starting on record 97231, ending on 97235

Actions