CVE List

Id CVE No. Status Description Phase Votes Comments Actions
79876  CVE-2015-2599  Candidate  Unspecified vulnerability in the RDBMS Scheduler component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality via unknown vectors.  Assigned (20150320)  None (candidate not yet proposed)    View
14596  CVE-2005-3390  Candidate  The RFC1867 file upload feature in PHP 4.x up to 4.4.0 and 5.x up to 5.0.5, when register_globals is enabled, allows remote attackers to modify the GLOBALS array and bypass security protections of PHP applications via a multipart/form-data POST request with a "GLOBALS" fileupload field.  Assigned (20051101)  None (candidate not yet proposed)    View
80132  CVE-2015-2855  Candidate  The WebUI component in Blue Coat SSL Visibility Appliance SV800, SV1800, SV2800, and SV3800 3.6.x through 3.8.x before 3.8.4 does not set the secure flag for the administrator"s cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session, a different vulnerability than CVE-2015-4138.  Assigned (20150403)  None (candidate not yet proposed)    View
14852  CVE-2005-3648  Candidate  Multiple SQL injection vulnerabilities in the get_record function in datalib.php in Moodle 1.5.2 allow remote attackers to execute arbitrary SQL commands via the id parameter in (1) category.php and (2) info.php.  Assigned (20051117)  None (candidate not yet proposed)    View
80388  CVE-2015-3111  Candidate  Heap-based buffer overflow in Adobe Photoshop CC before 16.0 (aka 2015.0.0) and Adobe Bridge CC before 6.11 allows attackers to execute arbitrary code via unspecified vectors.  Assigned (20150409)  None (candidate not yet proposed)    View

Page 1488 of 20943, showing 5 records out of 104715 total, starting on record 7436, ending on 7440

Actions