CVE List

Id CVE No. Status Description Phase Votes Comments Actions
21513  CVE-2006-5409  Candidate  Multiple SQL injection vulnerabilities in the wireless IDS management interface for Highwall Enterprise and Highwall Endpoint 4.0.2.11045 allow remote attackers to execute arbitrary SQL commands via unspecified vectors.  Assigned (20061019)  None (candidate not yet proposed)    View
87049  CVE-2016-0753  Candidate  Active Model in Ruby on Rails 4.1.x before 4.1.14.1, 4.2.x before 4.2.5.1, and 5.x before 5.0.0.beta1.1 supports the use of instance-level writers for class accessors, which allows remote attackers to bypass intended validation steps via crafted parameters.  Assigned (20151216)  None (candidate not yet proposed)    View
21769  CVE-2006-5665  Candidate  PHP remote file inclusion vulnerability in admin/modules_data.php in the phpBB module Spider Friendly 1.3.10 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.  Assigned (20061102)  None (candidate not yet proposed)    View
87305  CVE-2016-1000007  Candidate  Pagure 2.2.1 XSS in raw file endpoint  Assigned (20160705)  None (candidate not yet proposed)    View
22025  CVE-2006-5921  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in add_comment.php in Wheatblog (wB) allow remote attackers to inject arbitrary web script or HTML via the (1) Name, (2) WWW, and (3) Comment fields. NOTE: this issue may overlap CVE-2006-5195.  Assigned (20061115)  None (candidate not yet proposed)    View

Page 761 of 20943, showing 5 records out of 104715 total, starting on record 3801, ending on 3805

Actions