CVE List

Id CVE No. Status Description Phase Votes Comments Actions
18174  CVE-2006-2070  Candidate  Cross-site scripting (XSS) vulnerability in member.php in DevBB 1.0.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the member parameter in a viewpro action.  Assigned (20060426)  None (candidate not yet proposed)    View
83710  CVE-2015-6433  Candidate  SQL injection vulnerability in Cisco Unified Communications Manager 11.0(0.98000.225) allows remote authenticated users to execute arbitrary SQL commands via a crafted URL, aka Bug ID CSCut66767.  Assigned (20150817)  None (candidate not yet proposed)    View
18430  CVE-2006-2326  Candidate  Directory traversal vulnerability in index.php in OnlyScript.info Online Universal Payment System Script allows remote attackers to read arbitrary files via directory traversal sequences in the read parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20060511)  None (candidate not yet proposed)    View
83966  CVE-2015-6689  Candidate  Use-after-free vulnerability in Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Continuous before 2015.009.20069 on Windows and OS X allows attackers to execute arbitrary code via a crafted WillSave document action, a different vulnerability than CVE-2015-5586, CVE-2015-6683, CVE-2015-6684, CVE-2015-6687, CVE-2015-6688, CVE-2015-6690, CVE-2015-6691, CVE-2015-7615, CVE-2015-7617, and CVE-2015-7621.  Assigned (20150826)  None (candidate not yet proposed)    View
18686  CVE-2006-2582  Candidate  The editing form in RWiki 2.1.0pre1 through 2.1.0 allows remote attackers to execute arbitrary Ruby code via unknown attack vectors.  Assigned (20060525)  None (candidate not yet proposed)    View

Page 20200 of 20943, showing 5 records out of 104715 total, starting on record 100996, ending on 101000

Actions