CVE List

Id CVE No. Status Description Phase Votes Comments Actions
21257  CVE-2006-5153  Candidate  The (1) fwdrv.sys and (2) khips.sys drivers in Sunbelt Kerio Personal Firewall 4.3.268 and earlier do not validate arguments passed through to SSDT functions, including NtCreateFile, NtDeleteFile, NtLoadDriver, NtMapViewOfSection, NtOpenFile, and NtSetInformationFile, which allows local users to cause a denial of service (crash) and possibly other impacts via unspecified vectors.  Assigned (20061003)  None (candidate not yet proposed)    View
86793  CVE-2016-0497  Candidate  Unspecified vulnerability in the Oracle Agile Engineering Data Management component in Oracle Supply Chain Products Suite 6.1.2.2, 6.1.3.0, and 6.2.0.0 allows remote attackers to affect integrity via unknown vectors related to Web Client.  Assigned (20151209)  None (candidate not yet proposed)    View
21513  CVE-2006-5409  Candidate  Multiple SQL injection vulnerabilities in the wireless IDS management interface for Highwall Enterprise and Highwall Endpoint 4.0.2.11045 allow remote attackers to execute arbitrary SQL commands via unspecified vectors.  Assigned (20061019)  None (candidate not yet proposed)    View
87049  CVE-2016-0753  Candidate  Active Model in Ruby on Rails 4.1.x before 4.1.14.1, 4.2.x before 4.2.5.1, and 5.x before 5.0.0.beta1.1 supports the use of instance-level writers for class accessors, which allows remote attackers to bypass intended validation steps via crafted parameters.  Assigned (20151216)  None (candidate not yet proposed)    View
21769  CVE-2006-5665  Candidate  PHP remote file inclusion vulnerability in admin/modules_data.php in the phpBB module Spider Friendly 1.3.10 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.  Assigned (20061102)  None (candidate not yet proposed)    View

Page 758 of 20943, showing 5 records out of 104715 total, starting on record 3786, ending on 3790

Actions