CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
84222 | CVE-2015-6945 | Candidate | Cross-site scripting (XSS) vulnerability in JSP/MySQL Administrador Web 1 allows remote attackers to inject arbitrary web script or HTML via the bd parameter to sys/sys/listaBD2.jsp. | Assigned (20150915) | None (candidate not yet proposed) | View | |
18942 | CVE-2006-2838 | Candidate | Buffer overflow in the web console in F-Secure Anti-Virus for Microsoft Exchange 6.40, and Internet Gatekeeper 6.40 through 6.42 and 6.50 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown attack vectors. NOTE: By default, the connections are only allowed from the local host. | Assigned (20060605) | None (candidate not yet proposed) | View | |
84478 | CVE-2015-7201 | Candidate | Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors. | Assigned (20150916) | None (candidate not yet proposed) | View | |
19198 | CVE-2006-3094 | Candidate | Multiple SQL injection vulnerabilities in Calendarix Basic 0.7.20060401 and earlier, with magic_quotes_gpc disabled, allow remote attackers to execute arbitrary SQL commands via the id parameter in (1) cal_event.php and (2) cal_popup.php. | Assigned (20060619) | None (candidate not yet proposed) | View | |
84734 | CVE-2015-7457 | Candidate | Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 8.0.x before 8.0.0.1 CF20 and 8.5.x before 8.5.0.0 CF09 allows remote attackers to inject arbitrary web script or HTML via a crafted URL. | Assigned (20150929) | None (candidate not yet proposed) | View |
Page 20201 of 20943, showing 5 records out of 104715 total, starting on record 101001, ending on 101005