CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
79623 | CVE-2015-2346 | Candidate | XML external entity (XXE) vulnerability in Huawei SEQ Analyst before V200R002C03LG0001CP0022 allows remote authenticated users to read arbitrary files via the req parameter. | Assigned (20150318) | None (candidate not yet proposed) | View | |
14343 | CVE-2005-3137 | Candidate | The (1) cfmailfilter and (2) cfcron.in files for cfengine 1.6.5 allow local users to overwrite arbitrary files via a symlink attack on temporary files, a different vulnerability than CVE-2005-2960. | Assigned (20051005) | None (candidate not yet proposed) | View | |
79879 | CVE-2015-2602 | Candidate | Unspecified vulnerability in the Oracle Endeca Information Discovery Studio component in Oracle Fusion Middleware 2.2.2, 2.3, 2.4, 3.0, and 3.1 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Integrator, a different vulnerability than CVE-2015-2603, CVE-2015-2604, CVE-2015-2605, CVE-2015-2606, and CVE-2015-4745. | Assigned (20150320) | None (candidate not yet proposed) | View | |
14599 | CVE-2005-3393 | Candidate | Format string vulnerability in the foreign_option function in options.c for OpenVPN 2.0.x allows remote clients to execute arbitrary code via format string specifiers in a push of the dhcp-option command option. | Assigned (20051101) | None (candidate not yet proposed) | View | |
80135 | CVE-2015-2858 | Candidate | Datalex airline booking software before 2015-09-03 allows remote attackers to read or write to arbitrary user data via a modified profileId parameter to (1) ValidateFormAction.do or (2) ProfileConfirmEditAddressAction.do. | Assigned (20150403) | None (candidate not yet proposed) | View |
Page 1719 of 20943, showing 5 records out of 104715 total, starting on record 8591, ending on 8595