CVE List

Id CVE No. Status Description Phase Votes Comments Actions
83710  CVE-2015-6433  Candidate  SQL injection vulnerability in Cisco Unified Communications Manager 11.0(0.98000.225) allows remote authenticated users to execute arbitrary SQL commands via a crafted URL, aka Bug ID CSCut66767.  Assigned (20150817)  None (candidate not yet proposed)    View
18430  CVE-2006-2326  Candidate  Directory traversal vulnerability in index.php in OnlyScript.info Online Universal Payment System Script allows remote attackers to read arbitrary files via directory traversal sequences in the read parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20060511)  None (candidate not yet proposed)    View
83966  CVE-2015-6689  Candidate  Use-after-free vulnerability in Adobe Reader and Acrobat 10.x before 10.1.16 and 11.x before 11.0.13, Acrobat and Acrobat Reader DC Classic before 2015.006.30094, and Acrobat and Acrobat Reader DC Continuous before 2015.009.20069 on Windows and OS X allows attackers to execute arbitrary code via a crafted WillSave document action, a different vulnerability than CVE-2015-5586, CVE-2015-6683, CVE-2015-6684, CVE-2015-6687, CVE-2015-6688, CVE-2015-6690, CVE-2015-6691, CVE-2015-7615, CVE-2015-7617, and CVE-2015-7621.  Assigned (20150826)  None (candidate not yet proposed)    View
18686  CVE-2006-2582  Candidate  The editing form in RWiki 2.1.0pre1 through 2.1.0 allows remote attackers to execute arbitrary Ruby code via unknown attack vectors.  Assigned (20060525)  None (candidate not yet proposed)    View
84222  CVE-2015-6945  Candidate  Cross-site scripting (XSS) vulnerability in JSP/MySQL Administrador Web 1 allows remote attackers to inject arbitrary web script or HTML via the bd parameter to sys/sys/listaBD2.jsp.  Assigned (20150915)  None (candidate not yet proposed)    View

Page 20777 of 20943, showing 5 records out of 104715 total, starting on record 103881, ending on 103885

Actions