CVE List

Id CVE No. Status Description Phase Votes Comments Actions
20210  CVE-2006-4106  Candidate  Cross-site scripting (XSS) vulnerability in blursoft blur6ex 0.3 allows remote attackers to inject arbitrary web script or HTML via a comment title.  Assigned (20060814)  None (candidate not yet proposed)    View
85746  CVE-2015-8469  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20151204)  None (candidate not yet proposed)    View
20466  CVE-2006-4362  Candidate  Cross-site scripting (XSS) vulnerability in getad.php in Diesel Paid Mail allows remote attackers to inject arbitrary web script or HTML via the ps parameter.  Assigned (20060825)  None (candidate not yet proposed)    View
86002  CVE-2015-8725  Candidate  The dissect_diameter_base_framed_ipv6_prefix function in epan/dissectors/packet-diameter.c in the DIAMETER dissector in Wireshark 1.12.x before 1.12.9 and 2.0.x before 2.0.1 does not validate the IPv6 prefix length, which allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) via a crafted packet.  Assigned (20160103)  None (candidate not yet proposed)    View
20722  CVE-2006-4618  Candidate  PHP remote file inclusion vulnerability in adodb-postgres7.inc.php in John Lim ADOdb, possibly 4.01 and earlier, as used in Intechnic In-link 2.3.4, allows remote attackers to execute arbitrary PHP code via a URL in the ADODB_DIR parameter.  Assigned (20060906)  None (candidate not yet proposed)    View

Page 19852 of 20943, showing 5 records out of 104715 total, starting on record 99256, ending on 99260

Actions