CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
87543 | CVE-2016-10048 | Candidate | Directory traversal vulnerability in magick/module.c in ImageMagick 6.9.4-7 allows remote attackers to load arbitrary modules via unspecified vectors. | Assigned (20161226) | None (candidate not yet proposed) | View | |
22263 | CVE-2006-6159 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in newticket.php in DeskPRO 2.0.0 and 2.0.1 allow remote attackers to inject arbitrary web script or HTML via the (1) message or (2) subject parameter. | Assigned (20061128) | None (candidate not yet proposed) | View | |
87799 | CVE-2016-10280 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20170328) | None (candidate not yet proposed) | View | |
22519 | CVE-2006-6415 | Candidate | ** DISPUTED ** PHP remote file inclusion vulnerability in admin/lib-maintenance.inc.php in phpAdsNew 2.0.4-pr2 allows remote attackers to execute arbitrary PHP code via a URL in the phpAds_path parameter, a different component than CVE-2006-3984. NOTE: this issue is disputed by CVE, since phpAds_path is used as a constant. | Assigned (20061209) | None (candidate not yet proposed) | View | |
88055 | CVE-2016-1236 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in (1) revision.php, (2) log.php, (3) listing.php, and (4) comp.php in WebSVN allow context-dependent attackers to inject arbitrary web script or HTML via the name of a (a) file or (b) directory in a repository. | Assigned (20151227) | None (candidate not yet proposed) | View |
Page 20260 of 20943, showing 5 records out of 104715 total, starting on record 101296, ending on 101300