CVE List

Id CVE No. Status Description Phase Votes Comments Actions
22270  CVE-2006-6166  Candidate  Cross-site scripting (XSS) vulnerability in jce.php in the JCE Admin Component in Ryan Demmer Joomla Content Editor (JCE) 1.0.4 for Joomla! (com_jce), without the 20060821 jce_patch, allows remote attackers to inject arbitrary web script or HTML via the mosConfig_live_site parameter.  Assigned (20061128)  None (candidate not yet proposed)    View
87806  CVE-2016-10287  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170328)  None (candidate not yet proposed)    View
22526  CVE-2006-6422  Candidate  Agileco AgileBill 1.4.x and AgileVoice 1.4.x do not properly handle certain proxy requests, which allows remote attackers to disable the application by entering invalid license data on a form, possibly involving modules/core/license.inc.php. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.  Assigned (20061209)  None (candidate not yet proposed)    View
88062  CVE-2016-1243  Candidate  Stack-based buffer overflow in the extractTree function in unADF allows remote attackers to execute arbitrary code via a long pathname.  Assigned (20151227)  None (candidate not yet proposed)    View
22782  CVE-2006-6678  Candidate  The edit_textarea function in form-file.c in Netrik 1.15.4 and earlier does not properly verify temporary filenames when editing textarea fields, which allows attackers to execute arbitrary commands via shell metacharacters in the filename.  Assigned (20061220)  None (candidate not yet proposed)    View

Page 20817 of 20943, showing 5 records out of 104715 total, starting on record 104081, ending on 104085

Actions