CVE List

Id CVE No. Status Description Phase Votes Comments Actions
84727  CVE-2015-7450  Candidate  Serialized-object interfaces in certain IBM analytics, business solutions, cognitive, IT infrastructure, and mobile and social products allow remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the InvokerTransformer class in the Apache Commons Collections library.  Assigned (20150929)  None (candidate not yet proposed)    View
19447  CVE-2006-3343  Candidate  PHP remote file inclusion vulnerability in recipe/cookbook.php in CrisoftRicette 1.0pre15b allows remote attackers to execute arbitrary PHP code via a URL in the crisoftricette parameter.  Assigned (20060703)  None (candidate not yet proposed)    View
84983  CVE-2015-7706  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Secure Data Space SDS-API before 3.5.7 allow remote attackers to inject arbitrary web script or HTML via the (1) PATH_INFO to api/v3/public/shares/downloads/, the (2) authType parameter to api/v3/auth/login, or the (3) login parameter to api/v3/auth/reset_password.  Assigned (20151005)  None (candidate not yet proposed)    View
19703  CVE-2006-3599  Candidate  SQL injection vulnerability in the Nuke Advanced Classifieds module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the id_ads parameter in an EditAds op.  Assigned (20060714)  None (candidate not yet proposed)    View
85239  CVE-2015-7962  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20151023)  None (candidate not yet proposed)    View

Page 19645 of 20943, showing 5 records out of 104715 total, starting on record 98221, ending on 98225

Actions