CVE List

Id CVE No. Status Description Phase Votes Comments Actions
87538  CVE-2016-10043  Candidate  An issue was discovered in Radisys MRF Web Panel (SWMS) 9.0.1. The MSM_MACRO_NAME POST parameter in /swms/ms.cgi was discovered to be vulnerable to OS command injection attacks. It is possible to use the pipe character (|) to inject arbitrary OS commands and retrieve the output in the application"s responses. Attackers could execute unauthorized commands, which could then be used to disable the software, or read, write, and modify data for which the attacker does not have permissions to access directly. Since the targeted application is directly executing the commands instead of the attacker, any malicious activities may appear to come from the application or the application"s owner (apache user).  Assigned (20161226)  None (candidate not yet proposed)    View
22258  CVE-2006-6154  Candidate  PHP remote file inclusion vulnerability in addcode.php in HIOX Star Rating System Script (HSRS) 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the hm parameter.  Assigned (20061128)  None (candidate not yet proposed)    View
87794  CVE-2016-10276  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170328)  None (candidate not yet proposed)    View
22514  CVE-2006-6410  Candidate  Buffer overflow in an ActiveX control in VMWare 5.5.1 allows local users to execute arbitrary code via a long VmdbDb parameter to the Initialize function.  Assigned (20061209)  None (candidate not yet proposed)    View
88050  CVE-2016-1231  Candidate  Directory traversal vulnerability in the HTTP file-serving module (mod_http_files) in Prosody 0.9.x before 0.9.9 allows remote attackers to read arbitrary files via a .. (dot dot) in an unspecified path.  Assigned (20151227)  None (candidate not yet proposed)    View

Page 19855 of 20943, showing 5 records out of 104715 total, starting on record 99271, ending on 99275

Actions