CVE List

Id CVE No. Status Description Phase Votes Comments Actions
79623  CVE-2015-2346  Candidate  XML external entity (XXE) vulnerability in Huawei SEQ Analyst before V200R002C03LG0001CP0022 allows remote authenticated users to read arbitrary files via the req parameter.  Assigned (20150318)  None (candidate not yet proposed)    View
14343  CVE-2005-3137  Candidate  The (1) cfmailfilter and (2) cfcron.in files for cfengine 1.6.5 allow local users to overwrite arbitrary files via a symlink attack on temporary files, a different vulnerability than CVE-2005-2960.  Assigned (20051005)  None (candidate not yet proposed)    View
79879  CVE-2015-2602  Candidate  Unspecified vulnerability in the Oracle Endeca Information Discovery Studio component in Oracle Fusion Middleware 2.2.2, 2.3, 2.4, 3.0, and 3.1 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Integrator, a different vulnerability than CVE-2015-2603, CVE-2015-2604, CVE-2015-2605, CVE-2015-2606, and CVE-2015-4745.  Assigned (20150320)  None (candidate not yet proposed)    View
14599  CVE-2005-3393  Candidate  Format string vulnerability in the foreign_option function in options.c for OpenVPN 2.0.x allows remote clients to execute arbitrary code via format string specifiers in a push of the dhcp-option command option.  Assigned (20051101)  None (candidate not yet proposed)    View
80135  CVE-2015-2858  Candidate  Datalex airline booking software before 2015-09-03 allows remote attackers to read or write to arbitrary user data via a modified profileId parameter to (1) ValidateFormAction.do or (2) ProfileConfirmEditAddressAction.do.  Assigned (20150403)  None (candidate not yet proposed)    View

Page 1719 of 20943, showing 5 records out of 104715 total, starting on record 8591, ending on 8595

Actions