CVE List

Id CVE No. Status Description Phase Votes Comments Actions
19453  CVE-2006-3349  Candidate  Multiple SQL injection vulnerabilities in SmS Script allow remote attackers to execute arbitrary SQL commands via the CatID parameter in (1) cat.php and (2) add.php.  Assigned (20060703)  None (candidate not yet proposed)    View
84989  CVE-2015-7712  Candidate  Multiple eval injection vulnerabilities in mods/_standard/gradebook/edit_marks.php in ATutor 2.2 and earlier allow remote authenticated users with the AT_PRIV_GRADEBOOK privilege to execute arbitrary PHP code via the (1) asc or (2) desc parameter.  Assigned (20151005)  None (candidate not yet proposed)    View
19709  CVE-2006-3605  Candidate  Microsoft Internet Explorer 6 allows remote attackers to cause a denial of service (crash) by setting the Transition property on an uninitialized DXImageTransform.Microsoft.RevealTrans.1 ActiveX Object, which triggers a null dereference.  Assigned (20060714)  None (candidate not yet proposed)    View
85245  CVE-2015-7968  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20151023)  None (candidate not yet proposed)    View
19965  CVE-2006-3861  Candidate  IBM Informix Dynamic Server (IDS) before 9.40.xC7 and 10.00 before 10.00.xC3 does not use database creation permissions, which allows remote authenticated users to create arbitrary databases.  Assigned (20060726)  None (candidate not yet proposed)    View

Page 20733 of 20943, showing 5 records out of 104715 total, starting on record 103661, ending on 103665

Actions