CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
84727 | CVE-2015-7450 | Candidate | Serialized-object interfaces in certain IBM analytics, business solutions, cognitive, IT infrastructure, and mobile and social products allow remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the InvokerTransformer class in the Apache Commons Collections library. | Assigned (20150929) | None (candidate not yet proposed) | View | |
19447 | CVE-2006-3343 | Candidate | PHP remote file inclusion vulnerability in recipe/cookbook.php in CrisoftRicette 1.0pre15b allows remote attackers to execute arbitrary PHP code via a URL in the crisoftricette parameter. | Assigned (20060703) | None (candidate not yet proposed) | View | |
84983 | CVE-2015-7706 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in Secure Data Space SDS-API before 3.5.7 allow remote attackers to inject arbitrary web script or HTML via the (1) PATH_INFO to api/v3/public/shares/downloads/, the (2) authType parameter to api/v3/auth/login, or the (3) login parameter to api/v3/auth/reset_password. | Assigned (20151005) | None (candidate not yet proposed) | View | |
19703 | CVE-2006-3599 | Candidate | SQL injection vulnerability in the Nuke Advanced Classifieds module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the id_ads parameter in an EditAds op. | Assigned (20060714) | None (candidate not yet proposed) | View | |
85239 | CVE-2015-7962 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20151023) | None (candidate not yet proposed) | View |
Page 19645 of 20943, showing 5 records out of 104715 total, starting on record 98221, ending on 98225