CVE List

Id CVE No. Status Description Phase Votes Comments Actions
86268  CVE-2015-8991  Candidate  Malicious file execution vulnerability in Intel Security McAfee Security Scan+ (MSS+) before 3.11.266.3 allows attackers to make the product momentarily vulnerable via executing preexisting specifically crafted malware during installation or uninstallation, but not during normal operation.  Assigned (20170227)  None (candidate not yet proposed)    View
20988  CVE-2006-4884  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in IDevSpot iSupport 1.8 allow remote attackers to inject arbitrary web script or HTML via (1) the suser parameter in support/rightbar.php, (2) the ticket_id parameter in support/open_tickets.php, and (3) the cons_page_title parameter in index.php. NOTE: the provenance of this information is unknown; the details are obtained from third party information.  Assigned (20060919)  None (candidate not yet proposed)    View
86524  CVE-2016-0228  Candidate  IBM Marketing Platform 10.0 could allow a remote attacker to conduct phishing attacks, caused by an open redirect vulnerability in various scripts. An attacker could exploit this vulnerability to redirect a victim to arbitrary Web sites. IBM X-Force ID: 110236.  Assigned (20151208)  None (candidate not yet proposed)    View
21244  CVE-2006-5140  Candidate  SQL injection vulnerability in display.php in Lappy512 PHP Krazy Image Host Script (phpkimagehost) 0.7a allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20061002)  None (candidate not yet proposed)    View
86780  CVE-2016-0484  Candidate  Unspecified vulnerability in the Oracle Application Testing Suite component in Oracle Enterprise Manager Grid Control 12.4.0.2 and 12.5.0.2 allows remote attackers to affect confidentiality via unknown vectors related to Test Manager for Web Apps. NOTE: the previous information is from the January 2016 CPU. Oracle has not commented on third-party claims that this is a directory traversal vulnerability in the DownloadServlet servlet, which allows remote attackers to read arbitrary files via directory traversal sequences in the scriptPath parameter.  Assigned (20151209)  None (candidate not yet proposed)    View

Page 20656 of 20943, showing 5 records out of 104715 total, starting on record 103276, ending on 103280

Actions