CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
17399 | CVE-2006-1295 | Candidate | Cross-site scripting (XSS) vulnerability in recherche.php3 in SPIP 1.8.2-g allows remote attackers to inject arbitrary web script or HTML via the recherche parameter. | Assigned (20060319) | None (candidate not yet proposed) | View | |
82935 | CVE-2015-5658 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20150724) | None (candidate not yet proposed) | View | |
17655 | CVE-2006-1551 | Candidate | Eval injection vulnerability in pajax_call_dispatcher.php in PAJAX 0.5.1 and earlier allows remote attackers to execute arbitrary code via the (1) $method and (2) $args parameters. | Assigned (20060330) | None (candidate not yet proposed) | View | |
83191 | CVE-2015-5914 | Candidate | The EFI component in Apple OS X before 10.11 allows physically proximate attackers to modify firmware during the EFI update process by inserting an Apple Ethernet Thunderbolt adapter with crafted code in an Option ROM, aka a "Thunderstrike" issue. NOTE: this issue exists because of an incomplete fix for CVE-2014-4498. | Assigned (20150806) | None (candidate not yet proposed) | View | |
17911 | CVE-2006-1807 | Candidate | Multiple SQL injection vulnerabilities in index.php in Musicbox 2.3.3 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) start parameter in a search action or (2) type parameter in a top action. | Assigned (20060417) | None (candidate not yet proposed) | View |
Page 19642 of 20943, showing 5 records out of 104715 total, starting on record 98206, ending on 98210