CVE List

Id CVE No. Status Description Phase Votes Comments Actions
93316  CVE-2016-6496  Candidate  The LDAP directory connector in Atlassian Crowd before 2.8.8 and 2.9.x before 2.9.5 allows remote attackers to execute arbitrary code via an LDAP attribute with a crafted serialized Java object, aka LDAP entry poisoning.  Assigned (20160801)  None (candidate not yet proposed)    View
93317  CVE-2016-6497  Candidate  main/java/org/apache/directory/groovyldap/LDAP.java in the Groovy LDAP API allows attackers to conduct LDAP entry poisoning attacks by leveraging setting returnObjFlag to true for all search methods.  Assigned (20160801)  None (candidate not yet proposed)    View
93318  CVE-2016-6498  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160801)  None (candidate not yet proposed)    View
93319  CVE-2016-6499  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160801)  None (candidate not yet proposed)    View
93320  CVE-2016-6500  Candidate  Unspecified methods in the RACF Connector component before 1.1.1.0 in ForgeRock OpenIDM and OpenICF improperly call the SearchControls constructor with returnObjFlag set to true, which allows remote attackers to execute arbitrary code via a crafted serialized Java object, aka LDAP entry poisoning.  Assigned (20160801)  None (candidate not yet proposed)    View

Page 18664 of 20943, showing 5 records out of 104715 total, starting on record 93316, ending on 93320

Actions