CVE List

Id CVE No. Status Description Phase Votes Comments Actions
18951  CVE-2006-2847  Candidate  SQL injection vulnerability in links.asp in aspWebLinks 2.0 allows remote attackers to execute arbitrary SQL commands via the linkID parameter.  Assigned (20060605)  None (candidate not yet proposed)    View
84487  CVE-2015-7210  Candidate  Use-after-free vulnerability in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 allows remote attackers to execute arbitrary code by triggering attempted use of a data channel that has been closed by a WebRTC function.  Assigned (20150916)  None (candidate not yet proposed)    View
19207  CVE-2006-3103  Candidate  Cross-site scripting (XSS) vulnerability in Bitweaver 1.3 allows remote attackers to inject arbitrary web script or HTML via the (1) error parameter in users/login.php and the (2) feedback parameter in articles/index.php.  Assigned (20060620)  None (candidate not yet proposed)    View
84743  CVE-2015-7466  Candidate  Lifecycle Query Engine (LQE) in IBM Jazz Reporting Service (JRS) 6.0 before 6.0.0-Rational-CLM-ifix005 allows remote authenticated users to conduct LDAP injection attacks, and consequently bypass intended query restrictions or modify the LDAP directory, via unspecified vectors.  Assigned (20150929)  None (candidate not yet proposed)    View
19463  CVE-2006-3359  Candidate  Multiple SQL injection vulnerabilities in index.php in NewsPHP 2006 PRO allow remote attackers to inject arbitrary web script or HTML via the (1) words, (2) id, (3) topmenuitem, and (4) cat_id parameters in (a) index.php; and the (5) category parameter in (b) inc/rss_feed.php.  Assigned (20060706)  None (candidate not yet proposed)    View

Page 593 of 20943, showing 5 records out of 104715 total, starting on record 2961, ending on 2965

Actions