CVE List

Id CVE No. Status Description Phase Votes Comments Actions
18935  CVE-2006-2831  Candidate  Drupal 4.6.x before 4.6.8 and 4.7.x before 4.7.2, when running under certain Apache configurations such as when FileInfo overrides are disabled within .htaccess, allows remote attackers to execute arbitrary code by uploading a file with multiple extensions, a variant of CVE-2006-2743.  Assigned (20060605)  None (candidate not yet proposed)    View
84471  CVE-2015-7194  Candidate  Buffer underflow in libjar in Mozilla Firefox before 42.0 and Firefox ESR 38.x before 38.4 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted ZIP archive.  Assigned (20150916)  None (candidate not yet proposed)    View
19191  CVE-2006-3087  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in EZGallery 1.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) pUserID, (2) aid, (3) aname, (4) uid, and (5) m parameter in (a) common/galleries.asp; (6) aid, (7) aname, (8) uid, (9) m, (10) gp, and (11) g parameter in (b) common/pupload.asp; and (12) msg, (13) fn and (14) gp parameter in (c) common/upload.asp.  Assigned (20060619)  None (candidate not yet proposed)    View
84727  CVE-2015-7450  Candidate  Serialized-object interfaces in certain IBM analytics, business solutions, cognitive, IT infrastructure, and mobile and social products allow remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the InvokerTransformer class in the Apache Commons Collections library.  Assigned (20150929)  None (candidate not yet proposed)    View
19447  CVE-2006-3343  Candidate  PHP remote file inclusion vulnerability in recipe/cookbook.php in CrisoftRicette 1.0pre15b allows remote attackers to execute arbitrary PHP code via a URL in the crisoftricette parameter.  Assigned (20060703)  None (candidate not yet proposed)    View

Page 20255 of 20943, showing 5 records out of 104715 total, starting on record 101271, ending on 101275

Actions