CVE List

Id CVE No. Status Description Phase Votes Comments Actions
17674  CVE-2006-1570  Candidate  Cross-site scripting (XSS) vulnerability in Esqlanelapse 2.0 and 2.2 allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors.  Assigned (20060331)  None (candidate not yet proposed)    View
83210  CVE-2015-5933  Candidate  Audio in Apple OS X before 10.11.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted audio file, a different vulnerability than CVE-2015-5934.  Assigned (20150806)  None (candidate not yet proposed)    View
17930  CVE-2006-1826  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Snipe Gallery 3.1.4 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) gallery_id parameter in view.php, (2) keyword parameter in search.php, and (3) image_id parameter in image.php. NOTE: it is possible that vectors 1 and 3 are resultant from SQL injection.  Assigned (20060417)  None (candidate not yet proposed)    View
83466  CVE-2015-6189  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150814)  None (candidate not yet proposed)    View
18186  CVE-2006-2082  Candidate  Directory traversal vulnerability in Quake 3 engine, as used in products including Quake3 Arena, Return to Castle Wolfenstein, Wolfenstein: Enemy Territory, and Star Trek Voyager: Elite Force, when the sv_allowdownload cvar is enabled, allows remote attackers to read arbitrary files from the server via ".." sequences in a .pk3 file request.  Assigned (20060428)  None (candidate not yet proposed)    View

Page 833 of 20943, showing 5 records out of 104715 total, starting on record 4161, ending on 4165

Actions