CVE List

Id CVE No. Status Description Phase Votes Comments Actions
82455  CVE-2015-5178  Candidate  The Management Console in Red Hat Enterprise Application Platform before 6.4.4 and WildFly (formerly JBoss Application Server) does not send an X-Frame-Options HTTP header, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web page that contains a (1) FRAME or (2) IFRAME element.  Assigned (20150701)  None (candidate not yet proposed)    View
17175  CVE-2006-1071  Candidate  Cross-site scripting (XSS) vulnerability in index.php in DVguestbook 1.2.2 allows remote attackers to inject arbitrary web script or HTML via the page parameter.  Assigned (20060307)  None (candidate not yet proposed)    View
82711  CVE-2015-5434  Candidate  HPE Networking Products, originally branded as Comware 5, Comware 7, H3C, or HP, allow remote attackers to bypass intended access restrictions or cause a denial of service via "Virtual routing and forwarding (VRF) hopping."  Assigned (20150707)  None (candidate not yet proposed)    View
17431  CVE-2006-1327  Candidate  SQL injection vulnerability in reg.php in SoftBB 0.1 allows remote attackers to execute arbitrary SQL commands via the mail parameter.  Assigned (20060320)  None (candidate not yet proposed)    View
82967  CVE-2015-5690  Candidate  The management console on Symantec Web Gateway (SWG) appliances with software before 5.2.2 DB 5.0.0.1277 allows remote authenticated users to bypass intended access restrictions and execute arbitrary commands by leveraging a "redirect."  Assigned (20150728)  None (candidate not yet proposed)    View

Page 1854 of 20943, showing 5 records out of 104715 total, starting on record 9266, ending on 9270

Actions