CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
87533 | CVE-2016-10039 | Candidate | Directory traversal in /connectors/index.php in MODX Revolution before 2.5.2-pl allows remote attackers to perform local file inclusion/traversal/manipulation via a crafted dir parameter, related to browser/directory/getfiles. | Assigned (20161224) | None (candidate not yet proposed) | View | |
22253 | CVE-2006-6149 | Candidate | SQL injection vulnerability in index.asp in JiRos FAQ Manager 1.0 allows remote attackers to execute arbitrary SQL commands via the tID parameter. | Assigned (20061128) | None (candidate not yet proposed) | View | |
87789 | CVE-2016-10271 | Candidate | tools/tiffcrop.c in LibTIFF 4.0.7 allows remote attackers to cause a denial of service (heap-based buffer over-read and buffer overflow) or possibly have unspecified other impact via a crafted TIFF image, related to "READ of size 1" and libtiff/tif_fax3.c:413:13. | Assigned (20170324) | None (candidate not yet proposed) | View | |
22509 | CVE-2006-6405 | Candidate | BitDefender Mail Protection for SMB 2.0 allows remote attackers to bypass virus detection by inserting invalid characters into base64 encoded content in a multipart/mixed MIME file, as demonstrated with the EICAR test file. | Assigned (20061209) | None (candidate not yet proposed) | View | |
88045 | CVE-2016-1226 | Candidate | Cross-site scripting (XSS) vulnerability in Trend Micro Internet Security 8 and 10 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20151226) | None (candidate not yet proposed) | View |
Page 19454 of 20943, showing 5 records out of 104715 total, starting on record 97266, ending on 97270