CVE List

Id CVE No. Status Description Phase Votes Comments Actions
18944  CVE-2006-2840  Candidate  Cross-site scripting (XSS) vulnerability in (1) uploads.php and (2) "url links" in PmWiki 2.1.6 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.  Assigned (20060605)  None (candidate not yet proposed)    View
84480  CVE-2015-7203  Candidate  Buffer overflow in the DirectWriteFontInfo::LoadFontFamilyData function in gfx/thebes/gfxDWriteFontList.cpp in Mozilla Firefox before 43.0 might allow remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted font-family name.  Assigned (20150916)  None (candidate not yet proposed)    View
19200  CVE-2006-3096  Candidate  Multiple SQL injection vulnerabilities in iPostMX 2005 2.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) forum parameter in messagepost.cfm and (2) topic parameter in topics.cfm. NOTE: this item was created based on information in a blog entry that was apparently removed after CVE analysis. As of 20060619, CVE is attempting to determing the cause of the removal.  Assigned (20060619)  None (candidate not yet proposed)    View
84736  CVE-2015-7459  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150929)  None (candidate not yet proposed)    View
19456  CVE-2006-3352  Candidate  ** DISPUTED ** Cross-domain vulnerability in Mozilla Firefox allows remote attackers to access restricted information from other domains via an object tag with a data parameter that references a link on the attacker"s originating site that specifies a Location HTTP header that references the target site, which then makes that content available through the outerHTML attribute of the object. NOTE: this description was based on a report that has since been retracted by the original authors. The authors misinterpreted their test results. Other third parties also disputed the original report. Therefore, this is not a vulnerability. It is being assigned a candidate number to provide a clear indication of its status.  Assigned (20060705)  None (candidate not yet proposed)    View

Page 62 of 20943, showing 5 records out of 104715 total, starting on record 306, ending on 310

Actions