CVE List

Id CVE No. Status Description Phase Votes Comments Actions
36839  CVE-2008-6722  Candidate  Novell Access Manager 3 SP4 does not properly expire X.509 certificate sessions, which allows physically proximate attackers to obtain a logged-in session by using a victim"s web-browser process that continues to send the original and valid SSL sessionID, related to inability of Apache Tomcat to clear entries from its SSL cache.  Assigned (20090414)  None (candidate not yet proposed)    View
102375  CVE-2017-5555  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170122)  None (candidate not yet proposed)    View
37095  CVE-2008-6978  Candidate  Unrestricted file upload vulnerability in Full Revolution aspWebAlbum 3.2 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in pics/, related to the uploadmedia action in album.asp.  Assigned (20090817)  None (candidate not yet proposed)    View
102631  CVE-2017-5811  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20170201)  None (candidate not yet proposed)    View
37351  CVE-2008-7234  Candidate  Unspecified vulnerability in the Oracle BPEL Worklist Application component in Oracle Application Server 10.1.2.2 and 10.1.3.3 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, aka AS03.  Assigned (20090914)  None (candidate not yet proposed)    View

Page 19032 of 20943, showing 5 records out of 104715 total, starting on record 95156, ending on 95160

Actions