CVE List

Id CVE No. Status Description Phase Votes Comments Actions
86253  CVE-2015-8976  Candidate  Cross-site scripting (XSS) vulnerability in MyBB (aka MyBulletinBoard) before 1.6.18 and 1.8.x before 1.8.6 and MyBB Merge System before 1.8.6 might allow remote attackers to inject arbitrary web script or HTML via vectors related to "old upgrade files."  Assigned (20161117)  None (candidate not yet proposed)    View
20973  CVE-2006-4869  Candidate  PHP remote file inclusion vulnerability in phpunity-postcard.php in phpunity.postcard allows remote attackers to execute arbitrary PHP code via a URL in the gallery_path parameter.  Assigned (20060919)  None (candidate not yet proposed)    View
86509  CVE-2016-0213  Candidate  Stack-based buffer overflow in IBM Tivoli Storage Manager FastBack 5.5 and 6.1.x through 6.1.11.1 allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors, a different vulnerability than CVE-2016-0212 and CVE-2016-0216.  Assigned (20151208)  None (candidate not yet proposed)    View
21229  CVE-2006-5125  Candidate  Directory traversal vulnerability in window.php, possibly used by home.php, in Joshua Muheim phpMyWebmin 1.0 allows remote attackers to obtain sensitive information via a directory name in the target parameter, which triggers a directory listing through the opendir function.  Assigned (20061002)  None (candidate not yet proposed)    View
86765  CVE-2016-0469  Candidate  Unspecified vulnerability in the Oracle Retail MICROS C2 component in Oracle Retail Applications 9.89.0.0 allows local users to affect confidentiality via vectors related to POS.  Assigned (20151209)  None (candidate not yet proposed)    View

Page 19452 of 20943, showing 5 records out of 104715 total, starting on record 97256, ending on 97260

Actions