CVE List

Id CVE No. Status Description Phase Votes Comments Actions
83952  CVE-2015-6675  Candidate  Siemens RUGGEDCOM ROS 3.8.0 through 4.1.x permanently enables the IP forwarding feature, which allows remote attackers to bypass a VLAN isolation protection mechanism via IP traffic.  Assigned (20150826)  None (candidate not yet proposed)    View
18672  CVE-2006-2568  Candidate  PHP remote file inclusion vulnerability in addpost_newpoll.php in UBB.threads 6.4 through 6.5.2 and 6.5.1.1 (trial) allows remote attackers to execute arbitrary PHP code via a URL in the thispath parameter.  Assigned (20060524)  None (candidate not yet proposed)    View
84208  CVE-2015-6931  Candidate  Cross-site scripting (XSS) vulnerability in the vSphere Web Client in VMware vCenter Server 5.0 before U3g, 5.1 before U3d, and 5.5 before U2d allows remote attackers to inject arbitrary web script or HTML via a crafted URL.  Assigned (20150914)  None (candidate not yet proposed)    View
18928  CVE-2006-2824  Candidate  Logicalware MailManager before 2.0.10 does not remove 0xc8 0x27 (0xc8 followed by a single-quote character) from the data stream to the server, which allows remote attackers to modify data and gain administrative access when PostgreSQL is used, aka "bug #1494281 - Postgres encoding security hole." NOTE: while this issue involves PostgreSQL, it is specific to MailManager"s interface to PostgreSQL and is therefore a different vulnerability than CVE-2006-2313 and CVE-2006-2314.  Assigned (20060605)  None (candidate not yet proposed)    View
84464  CVE-2015-7187  Candidate  The Add-on SDK in Mozilla Firefox before 42.0 misinterprets a "script: false" panel setting, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via inline JavaScript code that is executed within a third-party extension.  Assigned (20150916)  None (candidate not yet proposed)    View

Page 19697 of 20943, showing 5 records out of 104715 total, starting on record 98481, ending on 98485

Actions