CVE List

Id CVE No. Status Description Phase Votes Comments Actions
84221  CVE-2015-6944  Candidate  Cross-site request forgery (CSRF) vulnerability in JSP/MySQL Administrador Web 1 allows remote attackers to hijack the authentication of users for requests that execute arbitrary SQL commands via the cmd parameter to sys/sys/listaBD2.jsp.  Assigned (20150915)  None (candidate not yet proposed)    View
18941  CVE-2006-2837  Candidate  Cross-site scripting (XSS) vulnerability in Techno Dreams Guest Book allows remote attackers to inject arbitrary web script or HTML via certain comment fields in the "Sign Our GuestBook" page, probably the x_Comments parameter to guestbookadd.asp.  Assigned (20060605)  None (candidate not yet proposed)    View
84477  CVE-2015-7200  Candidate  The CryptoKey interface implementation in Mozilla Firefox before 42.0 and Firefox ESR 38.x before 38.4 lacks status checking, which allows attackers to have an unspecified impact via vectors related to a cryptographic key.  Assigned (20150916)  None (candidate not yet proposed)    View
19197  CVE-2006-3093  Candidate  Multiple unspecified vulnerabilities in Adobe Acrobat Reader (acroread) before 7.0.8 have unknown impact and unknown vectors.  Assigned (20060619)  None (candidate not yet proposed)    View
84733  CVE-2015-7456  Candidate  IBM Spectrum Scale 4.1.1 before 4.1.1.4, and 4.2.0.0, allows remote authenticated users to discover object-storage admin passwords via unspecified vectors.  Assigned (20150929)  None (candidate not yet proposed)    View

Page 20732 of 20943, showing 5 records out of 104715 total, starting on record 103656, ending on 103660

Actions