CVE List

Id CVE No. Status Description Phase Votes Comments Actions
17904  CVE-2006-1800  Candidate  Directory traversal vulnerability in posts.php in SimpleBBS 1.0.6 through 1.1 allows remote attackers to include and execute arbitrary files via ".." sequences in the language cookie, as demonstrated by by injecting the code into the gl_session cookie of users.php, which is stored in error.log.  Assigned (20060417)  None (candidate not yet proposed)    View
83440  CVE-2015-6163  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150814)  None (candidate not yet proposed)    View
18160  CVE-2006-2056  Candidate  Argument injection vulnerability in Internet Explorer 6 for Windows XP SP2 allows user-assisted remote attackers to modify command line arguments to an invoked mail client via " (double quote) characters in a mailto: scheme handler, as demonstrated by launching Microsoft Outlook with an arbitrary filename as an attachment. NOTE: it is not clear whether this issue is implementation-specific or a problem in the Microsoft API.  Assigned (20060426)  None (candidate not yet proposed)    View
83696  CVE-2015-6419  Candidate  Cisco FireSIGHT Management Center with software 4.10.3, 5.2.0, 5.3.0, 5.3.1, and 5.4.0 allows remote authenticated users to read arbitrary files via a crafted GET request, aka Bug ID CSCur25410.  Assigned (20150817)  None (candidate not yet proposed)    View
18416  CVE-2006-2312  Candidate  Argument injection vulnerability in the URI handler in Skype 2.0.*.104 and 2.5.*.0 through 2.5.*.78 for Windows allows remote authorized attackers to download arbitrary files via a URL that contains certain command-line switches.  Assigned (20060511)  None (candidate not yet proposed)    View

Page 19696 of 20943, showing 5 records out of 104715 total, starting on record 98476, ending on 98480

Actions