CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
21256 | CVE-2006-5152 | Candidate | Cross-site scripting (XSS) vulnerability in Microsoft Internet Explorer allows remote attackers to inject arbitrary web script or HTML via a UTF-7 encoded URL that is returned in a large HTTP 404 error message without an explicit charset, a related issue to CVE-2006-0032. | Assigned (20061003) | None (candidate not yet proposed) | View | |
86792 | CVE-2016-0496 | Candidate | Unspecified vulnerability in the MICROS CWDirect component in Oracle Retail Applications 12.5, 13.0, 14.0, 15.0, 16.0, 17.0, and 18.0 allows remote attackers to affect confidentiality via unknown vectors related to Order Entry. | Assigned (20151209) | None (candidate not yet proposed) | View | |
21512 | CVE-2006-5408 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in the wireless IDS management interface for Highwall Enterprise and Highwall Endpoint 4.0.2.11045 allow remote attackers to inject arbitrary HTML or web script via unspecified vectors. | Assigned (20061019) | None (candidate not yet proposed) | View | |
87048 | CVE-2016-0752 | Candidate | Directory traversal vulnerability in Action View in Ruby on Rails before 3.2.22.1, 4.0.x and 4.1.x before 4.1.14.1, 4.2.x before 4.2.5.1, and 5.x before 5.0.0.beta1.1 allows remote attackers to read arbitrary files by leveraging an application"s unrestricted use of the render method and providing a .. (dot dot) in a pathname. | Assigned (20151216) | None (candidate not yet proposed) | View | |
21768 | CVE-2006-5664 | Candidate | The installation script in IBM Informix Dynamic Server 10.00, Informix Client Software Development Kit (CSDK) 2.90, and Informix I-Connect 2.90 allows local users to "compromise security" via a symlink attack on temporary files. | Assigned (20061102) | None (candidate not yet proposed) | View |
Page 677 of 20943, showing 5 records out of 104715 total, starting on record 3381, ending on 3385