CVE List

Id CVE No. Status Description Phase Votes Comments Actions
82169  CVE-2015-4892  Candidate  Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 allows remote authenticated users to affect integrity via unknown vectors related to Security, a different vulnerability than CVE-2015-4917.  Assigned (20150624)  None (candidate not yet proposed)    View
16889  CVE-2006-0785  Candidate  Absolute path traversal vulnerability in include.php in PHPKIT 1.6.1 Release 2 and earlier allows remote attackers to include and execute arbitrary local files via a direct request with a path parameter with a null character and beginning with (1) "/" (slash) for an absolute pathname or (2) a drive letter (such as "C:"), which bypasses checks for ".." sequences and trailing ".php" extensions.  Assigned (20060219)  None (candidate not yet proposed)    View
82425  CVE-2015-5148  Candidate  SQL injection vulnerability in LivelyCart 1.2.0 allows remote attackers to execute arbitrary SQL commands via the search_query parameter to product/search.  Assigned (20150630)  None (candidate not yet proposed)    View
17145  CVE-2006-1041  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Gregarius 0.5.2 allow remote attackers to inject arbitrary web script or HTML via the (1) rss_query parameter to search.php or (2) tag parameter to tags.php.  Assigned (20060307)  None (candidate not yet proposed)    View
82681  CVE-2015-5404  Candidate  HP Systems Insight Manager (SIM) before 7.5.0, as used in HP Matrix Operating Environment before 7.5.0 and other products, allows remote attackers to obtain sensitive information or modify data via unspecified vectors.  Assigned (20150707)  None (candidate not yet proposed)    View

Page 20410 of 20943, showing 5 records out of 104715 total, starting on record 102046, ending on 102050

Actions