CVE List

Id CVE No. Status Description Phase Votes Comments Actions
100107  CVE-2017-3287  Candidate  Vulnerability in the Oracle iStore component of Oracle E-Business Suite (subcomponent: User Interface). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, 12.2.5 and 12.2.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iStore. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle iStore, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle iStore accessible data as well as unauthorized update, insert or delete access to some of Oracle iStore accessible data. CVSS v3.0 Base Score 8.2 (Confidentiality and Integrity impacts).  Assigned (20161206)  None (candidate not yet proposed)    View
34827  CVE-2008-4710  Candidate  Cross-site scripting (XSS) vulnerability in the stock quotes page in Stock 6.x before 6.x-1.0, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20081023)  None (candidate not yet proposed)    View
100363  CVE-2017-3543  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161206)  None (candidate not yet proposed)    View
35083  CVE-2008-4966  Candidate  linux-patch-openswan 2.4.12 allows local users to overwrite arbitrary files via a symlink attack on (a) /tmp/snap##### and (b) /tmp/nightly##### temporary files, related to the (1) maysnap and (2) maytest scripts.  Assigned (20081106)  None (candidate not yet proposed)    View
100619  CVE-2017-3799  Candidate  A vulnerability in a URL parameter of Cisco WebEx Meeting Center could allow an unauthenticated, remote attacker to perform site redirection. More Information: CSCzu78401. Known Affected Releases: T28.1.  Assigned (20161221)  None (candidate not yet proposed)    View

Page 1541 of 20943, showing 5 records out of 104715 total, starting on record 7701, ending on 7705

Actions