CVE List

Id CVE No. Status Description Phase Votes Comments Actions
20998  CVE-2006-4894  Candidate  Cross-site scripting (XSS) vulnerability in forms/lostpassword.php in iDevSpot NixieAffiliate 1.9 and earlier allows remote attackers to inject arbitrary web script or HTML via the error parameter.  Assigned (20060919)  None (candidate not yet proposed)    View
86534  CVE-2016-0238  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20151208)  None (candidate not yet proposed)    View
21254  CVE-2006-5150  Candidate  SQL injection vulnerability in the reports system in OpenBiblio before 0.5.2 allows remote attackers with report privileges to execute arbitrary SQL commands via unspecified vectors.  Assigned (20061002)  None (candidate not yet proposed)    View
86790  CVE-2016-0494  Candidate  Unspecified vulnerability in the Java SE and Java SE Embedded components in Oracle Java SE 6u105, 7u91, and 8u66 and Java SE Embedded 8u65 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.  Assigned (20151209)  None (candidate not yet proposed)    View
21510  CVE-2006-5406  Candidate  Passgo Defender 5.2 creates the application directory with insecure permissions (Everyone/Full Control), which allows local users to read and modify sensitive files. NOTE: the provenance of this information is unknown; the details are obtained from third party information.  Assigned (20061018)  None (candidate not yet proposed)    View

Page 516 of 20943, showing 5 records out of 104715 total, starting on record 2576, ending on 2580

Actions