CVE List

Id CVE No. Status Description Phase Votes Comments Actions
20462  CVE-2006-4358  Candidate  Cross-site scripting (XSS) vulnerability in index.php in Diesel Pay allows remote attackers to inject arbitrary web script or HTML via the read parameter.  Assigned (20060825)  None (candidate not yet proposed)    View
85998  CVE-2015-8721  Candidate  Buffer overflow in the tvb_uncompress function in epan/tvbuff_zlib.c in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 allows remote attackers to cause a denial of service (application crash) via a crafted packet with zlib compression.  Assigned (20160103)  None (candidate not yet proposed)    View
20718  CVE-2006-4614  Candidate  PDAapps Verichat for Pocket PC 1.30bh stores usernames and passwords in plaintext in the Windows Mobile registry, which allows local users to obtain sensitive information via keys under HKEY_CURRENT_USERSoftwarePDAappsVeriChat.  Assigned (20060906)  None (candidate not yet proposed)    View
86254  CVE-2015-8977  Candidate  MyBB (aka MyBulletinBoard) before 1.6.18 and 1.8.x before 1.8.6 and MyBB Merge System before 1.8.6 allow remote attackers to obtain the installation path via vectors involving error log files.  Assigned (20161117)  None (candidate not yet proposed)    View
20974  CVE-2006-4870  Candidate  Multiple PHP remote file inclusion vulnerabilities in AEDating 4.1, and possibly earlier versions, allow remote attackers to execute arbitrary PHP code via a URL in the dir[inc] parameter in (1) inc/design.inc.php or (2) inc/admin_design.inc.php.  Assigned (20060919)  None (candidate not yet proposed)    View

Page 19547 of 20943, showing 5 records out of 104715 total, starting on record 97731, ending on 97735

Actions