CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
36839 | CVE-2008-6722 | Candidate | Novell Access Manager 3 SP4 does not properly expire X.509 certificate sessions, which allows physically proximate attackers to obtain a logged-in session by using a victim"s web-browser process that continues to send the original and valid SSL sessionID, related to inability of Apache Tomcat to clear entries from its SSL cache. | Assigned (20090414) | None (candidate not yet proposed) | View | |
102375 | CVE-2017-5555 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20170122) | None (candidate not yet proposed) | View | |
37095 | CVE-2008-6978 | Candidate | Unrestricted file upload vulnerability in Full Revolution aspWebAlbum 3.2 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in pics/, related to the uploadmedia action in album.asp. | Assigned (20090817) | None (candidate not yet proposed) | View | |
102631 | CVE-2017-5811 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20170201) | None (candidate not yet proposed) | View | |
37351 | CVE-2008-7234 | Candidate | Unspecified vulnerability in the Oracle BPEL Worklist Application component in Oracle Application Server 10.1.2.2 and 10.1.3.3 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, aka AS03. | Assigned (20090914) | None (candidate not yet proposed) | View |
Page 19032 of 20943, showing 5 records out of 104715 total, starting on record 95156, ending on 95160