CVE List

Id CVE No. Status Description Phase Votes Comments Actions
20982  CVE-2006-4878  Candidate  Directory traversal vulnerability in footer.php in David Bennett PHP-Post (PHPp) 1.0 and earlier allows remote attackers to read and include arbitrary local files via a .. (dot dot) sequence in the template parameter. NOTE: this was later reported to affect 1.0.1, and demonstrated for code execution by uploading and accessing an avatar file.  Assigned (20060919)  None (candidate not yet proposed)    View
86518  CVE-2016-0222  Candidate  IBM Maximo Asset Management 7.6 before 7.6.0.3 IFIX001 allows remote authenticated users to bypass intended access restrictions and read arbitrary purchase-order work logs via unspecified vectors.  Assigned (20151208)  None (candidate not yet proposed)    View
21238  CVE-2006-5134  Candidate  Mercury SiteScope 8.2 (8.1.2.0) allows remote authenticated users to cause a denial of service (loss of connectivity to the classic interface) via attempted HTML injection into the "new monitor description" field.  Assigned (20061002)  None (candidate not yet proposed)    View
86774  CVE-2016-0478  Candidate  Unspecified vulnerability in the Oracle Application Testing Suite component in Oracle Enterprise Manager Grid Control 12.4.0.2 and 12.5.0.2 allows remote attackers to affect confidentiality via unknown vectors related to Load Testing for Web Apps, a different vulnerability than CVE-2016-0476 and CVE-2016-0477. NOTE: the previous information is from the January 2016 CPU. Oracle has not commented on third-party claims that this is a directory traversal vulnerability in the DownloadServlet servlet, which allows remote attackers to read arbitrary files via directory traversal sequences in the scriptName parameter.  Assigned (20151209)  None (candidate not yet proposed)    View
21494  CVE-2006-5390  Candidate  PHP remote file inclusion vulnerability in includes/functions_mod_user.php in the ACP User Registration (MMW) 1.00 module for phpBB allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.  Assigned (20061018)  None (candidate not yet proposed)    View

Page 20173 of 20943, showing 5 records out of 104715 total, starting on record 100861, ending on 100865

Actions