CVE List

Id CVE No. Status Description Phase Votes Comments Actions
22256  CVE-2006-6152  Candidate  Multiple SQL injection vulnerabilities in vSpin.net Classified System 2004 allow remote attackers to execute arbitrary SQL commands via the (1) cat parameter to (a) cat.asp, or the (2) keyword, (3) order, (4) sort, (5) menuSelect, or (6) state parameter to (b) search.asp.  Assigned (20061128)  None (candidate not yet proposed)    View
87792  CVE-2016-10274  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170328)  None (candidate not yet proposed)    View
22512  CVE-2006-6408  Candidate  Kaspersky Anti-Virus for Linux Mail Servers 5.5.10 allows remote attackers to bypass virus detection by inserting invalid characters into base64 encoded content in a multipart/mixed MIME file, as demonstrated with the EICAR test file.  Assigned (20061209)  None (candidate not yet proposed)    View
88048  CVE-2016-1229  Candidate  Cross-site scripting (XSS) vulnerability in HumHub 0.20.0-beta.1 through 0.20.1 and 1.0.0-beta before 1.0.0-beta.3 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20151226)  None (candidate not yet proposed)    View
22768  CVE-2006-6664  Candidate  Format string vulnerability in Marathon Aleph One before 0.17.1 and 2006-12-17 might allow remote attackers to cause a denial of service (application crash) or execute arbitrary code via format string specifiers in the TopLevelLogger::logMessageV function in Misc/Logging.cpp. NOTE: some details were obtained from third party information.  Assigned (20061220)  None (candidate not yet proposed)    View

Page 19695 of 20943, showing 5 records out of 104715 total, starting on record 98471, ending on 98475

Actions