CVE List

Id CVE No. Status Description Phase Votes Comments Actions
16365  CVE-2006-0261  Candidate  Multiple unspecified vulnerabilities in Oracle Database server 8.1.7.4, 9.0.1.5, 9.2.0.7, and 10.1.0.5 have unspecified impact and attack vectors, as identified by Oracle Vuln# (1) DB07 in the Dictionary component and (2) DB14 in the Oracle Label Security component. NOTE: Oracle has not disputed reliable researcher claims that DB07 involves plaintext storage of the TDE wallet password in a trace file by event 10053.  Assigned (20060118)  None (candidate not yet proposed)    View
81901  CVE-2015-4624  Candidate  Hak5 WiFi Pineapple 2.0 through 2.3 uses predictable CSRF tokens.  Assigned (20150616)  None (candidate not yet proposed)    View
16621  CVE-2006-0517  Candidate  Multiple SQL injection vulnerabilities in formulaires/inc-formulaire_forum.php3 in SPIP 1.8.2-e and earlier and 1.9 Alpha 2 (5539) and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id_forum, (2) id_article, or (3) id_breve parameters to forum.php3; (4) unspecified vectors related to "session handling"; and (5) when posting "petitions".  Assigned (20060202)  None (candidate not yet proposed)    View
82157  CVE-2015-4880  Candidate  Unspecified vulnerability in the Oracle WebCenter Content component in Oracle Fusion Middleware 10.1.3.5.1 allows remote attackers to affect integrity via unknown vectors related to Content Server, a different vulnerability than CVE-2015-4867.  Assigned (20150624)  None (candidate not yet proposed)    View
16877  CVE-2006-0773  Candidate  Cross-site scripting (XSS) vulnerability in Hitachi Business Logic - Container 02-03 through 03-00-/B on Windows, and 03-00 through 03-00-/B on Linux, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in the extended receiving box function.  Assigned (20060218)  None (candidate not yet proposed)    View

Page 19074 of 20943, showing 5 records out of 104715 total, starting on record 95366, ending on 95370

Actions