CVE List

Id CVE No. Status Description Phase Votes Comments Actions
22790  CVE-2006-6686  Candidate  PHP remote file inclusion vulnerability in sender.php in Carsen Klock TextSend 1.5 allows remote attackers to execute arbitrary PHP code via a URL in the ROOT_PATH parameter.  Assigned (20061221)  None (candidate not yet proposed)    View
88326  CVE-2016-1507  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160107)  None (candidate not yet proposed)    View
23046  CVE-2006-6942  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in PhpMyAdmin before 2.9.1.1 allow remote attackers to inject arbitrary HTML or web script via (1) a comment for a table name, as exploited through (a) db_operations.php, (2) the db parameter to (b) db_create.php, (3) the newname parameter to db_operations.php, the (4) query_history_latest, (5) query_history_latest_db, and (6) querydisplay_tab parameters to (c) querywindow.php, and (7) the pos parameter to (d) sql.php.  Assigned (20070118)  None (candidate not yet proposed)    View
88582  CVE-2016-1763  Candidate  Messages in Apple iOS before 9.3 does not ensure that an auto-fill action applies to the intended message thread, which allows remote authenticated users to obtain sensitive information by providing a crafted sms: URL and reading a thread.  Assigned (20160113)  None (candidate not yet proposed)    View
23302  CVE-2006-7198  Candidate  Unspecified vulnerability in IBM WebSphere Application Server (WAS) before 5.1.1.14, and WAS for z/OS 601 before 6.0.2.13, has unknown impact and attack vectors, related to a "Potential security exposure," aka PK26123.  Assigned (20070430)  None (candidate not yet proposed)    View

Page 532 of 20943, showing 5 records out of 104715 total, starting on record 2656, ending on 2660

Actions