CVE List

Id CVE No. Status Description Phase Votes Comments Actions
17912  CVE-2006-1808  Candidate  Cross-site scripting (XSS) vulnerability in index.php in Lifetype 1.0.3 allows remote attackers to inject arbitrary web script or HTML via the show parameter in a Template operation.  Assigned (20060417)  None (candidate not yet proposed)    View
83448  CVE-2015-6171  Candidate  The kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, and Windows 10 Gold and 1511 allows local users to gain privileges via a crafted application, aka "Windows Kernel Memory Elevation of Privilege Vulnerability," a different vulnerability than CVE-2015-6173 and CVE-2015-6174.  Assigned (20150814)  None (candidate not yet proposed)    View
18168  CVE-2006-2064  Candidate  Unspecified vulnerability in the libpkcs11 library in Sun Solaris 10 might allow local users to gain privileges or cause a denial of service (application failure) via unknown attack vectors that involve the getpwnam family of non-reentrant functions.  Assigned (20060426)  None (candidate not yet proposed)    View
83704  CVE-2015-6427  Candidate  Cisco FireSIGHT Management Center allows remote attackers to bypass the HTTP attack detection feature and avoid triggering Snort IDS rules via an SSL session that is mishandled after decryption, aka Bug ID CSCux53437.  Assigned (20150817)  None (candidate not yet proposed)    View
18424  CVE-2006-2320  Candidate  Multiple SQL injection vulnerabilities in Ideal Science Ideal BB 1.5.4a and earlier allow remote attackers to execute arbitrary SQL commands via multiple unspecified vectors related to stored procedure calls. NOTE: due to lack of details from the researcher, it is not clear whether this overlaps CVE-2004-2209.  Assigned (20060511)  None (candidate not yet proposed)    View

Page 20314 of 20943, showing 5 records out of 104715 total, starting on record 101566, ending on 101570

Actions