CVE List

Id CVE No. Status Description Phase Votes Comments Actions
23036  CVE-2006-6932  Candidate  Multiple SQL injection vulnerabilities in Image Gallery with Access Database allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to (a) dispimage.asp, or the (2) order or (3) page parameter to (b) default.asp.  Assigned (20070116)  None (candidate not yet proposed)    View
88572  CVE-2016-1753  Candidate  Multiple integer overflows in the kernel in Apple iOS before 9.3, OS X before 10.11.4, tvOS before 9.2, and watchOS before 2.2 allow attackers to execute arbitrary code in a privileged context via a crafted app.  Assigned (20160113)  None (candidate not yet proposed)    View
23292  CVE-2006-7188  Candidate  The search function in cgi-lib/user-lib/search.pl in web-app.net WebAPP before 20060909 allows remote attackers to read internal forum posts via certain requests, possibly related to the $info{"forum"} variable.  Assigned (20070402)  None (candidate not yet proposed)    View
88828  CVE-2016-2009  Candidate  HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote authenticated users to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections (ACC) library.  Assigned (20160122)  None (candidate not yet proposed)    View
23548  CVE-2007-0191  Candidate  Cross-site scripting (XSS) vulnerability in admin.php in MKPortal allows remote attackers to inject arbitrary web script or HTML via two certain fields in a contents_new operation in the ad_contents section.  Assigned (20070110)  None (candidate not yet proposed)    View

Page 20630 of 20943, showing 5 records out of 104715 total, starting on record 103146, ending on 103150

Actions