CVE List

Id CVE No. Status Description Phase Votes Comments Actions
16139  CVE-2006-0035  Candidate  The netlink_rcv_skb function in af_netlink.c in Linux kernel 2.6.14 and 2.6.15 allows local users to cause a denial of service (infinite loop) via a nlmsg_len field of 0.  Assigned (20051220)  None (candidate not yet proposed)    View
81675  CVE-2015-4398  Candidate  Open redirect vulnerability in the Chaos tool suite (ctools) module before 6.x-1.12 and 7.x-1.x before 7.x-1.7 for Drupal allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors involving processing confirmation delete pages.  Assigned (20150605)  None (candidate not yet proposed)    View
16395  CVE-2006-0291  Candidate  Multiple unspecified vulnerabilities in Oracle Database Server 10.2.0.1, Application Server 9.0.4.2 and 10.1.2.1, Collaboration Suite Release 2, version 9.0.4.2 (Oracle9i), and E-Business Suite and Applications 11.5.10 have unspecified impact and attack vectors, as identified by Oracle Vuln# (1) WF02 and (2) WF03 in the Oracle Workflow Cartridge component.  Assigned (20060118)  None (candidate not yet proposed)    View
81931  CVE-2015-4654  Candidate  SQL injection vulnerability in the EQ Event Calendar component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to eqfullevent.  Assigned (20150618)  None (candidate not yet proposed)    View
16651  CVE-2006-0547  Candidate  Oracle Database 8i, 9i, and 10g allow remote authenticated users to execute arbitrary SQL statements in the context of the SYS user and bypass audit logging, including statements to create new privileged database accounts, via a modified AUTH_ALTER_SESSION attribute in the authentication phase of the Transparent Network Substrate (TNS) protocol. NOTE: due to the lack of relevant details from the Oracle advisory, a separate CVE is being created since it cannot be conclusively proven that this issue has been addressed by Oracle. It is possible that this is the same issue as Oracle Vuln# DB18 from the January 2006 CPU, in which case this would be subsumed by CVE-2006-0265.  Assigned (20060204)  None (candidate not yet proposed)    View

Page 1512 of 20943, showing 5 records out of 104715 total, starting on record 7556, ending on 7560

Actions