CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
20462 | CVE-2006-4358 | Candidate | Cross-site scripting (XSS) vulnerability in index.php in Diesel Pay allows remote attackers to inject arbitrary web script or HTML via the read parameter. | Assigned (20060825) | None (candidate not yet proposed) | View | |
85998 | CVE-2015-8721 | Candidate | Buffer overflow in the tvb_uncompress function in epan/tvbuff_zlib.c in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 allows remote attackers to cause a denial of service (application crash) via a crafted packet with zlib compression. | Assigned (20160103) | None (candidate not yet proposed) | View | |
20718 | CVE-2006-4614 | Candidate | PDAapps Verichat for Pocket PC 1.30bh stores usernames and passwords in plaintext in the Windows Mobile registry, which allows local users to obtain sensitive information via keys under HKEY_CURRENT_USERSoftwarePDAappsVeriChat. | Assigned (20060906) | None (candidate not yet proposed) | View | |
86254 | CVE-2015-8977 | Candidate | MyBB (aka MyBulletinBoard) before 1.6.18 and 1.8.x before 1.8.6 and MyBB Merge System before 1.8.6 allow remote attackers to obtain the installation path via vectors involving error log files. | Assigned (20161117) | None (candidate not yet proposed) | View | |
20974 | CVE-2006-4870 | Candidate | Multiple PHP remote file inclusion vulnerabilities in AEDating 4.1, and possibly earlier versions, allow remote attackers to execute arbitrary PHP code via a URL in the dir[inc] parameter in (1) inc/design.inc.php or (2) inc/admin_design.inc.php. | Assigned (20060919) | None (candidate not yet proposed) | View |
Page 19547 of 20943, showing 5 records out of 104715 total, starting on record 97731, ending on 97735