CVE List

Id CVE No. Status Description Phase Votes Comments Actions
87533  CVE-2016-10039  Candidate  Directory traversal in /connectors/index.php in MODX Revolution before 2.5.2-pl allows remote attackers to perform local file inclusion/traversal/manipulation via a crafted dir parameter, related to browser/directory/getfiles.  Assigned (20161224)  None (candidate not yet proposed)    View
22253  CVE-2006-6149  Candidate  SQL injection vulnerability in index.asp in JiRos FAQ Manager 1.0 allows remote attackers to execute arbitrary SQL commands via the tID parameter.  Assigned (20061128)  None (candidate not yet proposed)    View
87789  CVE-2016-10271  Candidate  tools/tiffcrop.c in LibTIFF 4.0.7 allows remote attackers to cause a denial of service (heap-based buffer over-read and buffer overflow) or possibly have unspecified other impact via a crafted TIFF image, related to "READ of size 1" and libtiff/tif_fax3.c:413:13.  Assigned (20170324)  None (candidate not yet proposed)    View
22509  CVE-2006-6405  Candidate  BitDefender Mail Protection for SMB 2.0 allows remote attackers to bypass virus detection by inserting invalid characters into base64 encoded content in a multipart/mixed MIME file, as demonstrated with the EICAR test file.  Assigned (20061209)  None (candidate not yet proposed)    View
88045  CVE-2016-1226  Candidate  Cross-site scripting (XSS) vulnerability in Trend Micro Internet Security 8 and 10 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20151226)  None (candidate not yet proposed)    View

Page 19454 of 20943, showing 5 records out of 104715 total, starting on record 97266, ending on 97270

Actions