CVE List

Id CVE No. Status Description Phase Votes Comments Actions
90354  CVE-2016-3535  Candidate  Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 12.1.3 allows remote attackers to affect confidentiality and integrity via vectors related to Remote Launch. NOTE: the previous information is from the July 2016 CPU. Oracle has not commented on third-party claims that this issue is a cross-site scripting (XSS) vulnerability, which allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20160317)  None (candidate not yet proposed)    View
25074  CVE-2007-1717  Candidate  The mail function in PHP 4.0.0 through 4.4.6 and 5.0.0 through 5.2.1 truncates e-mail messages at the first ASCIIZ ("") byte, which might allow context-dependent attackers to prevent intended information from being delivered in e-mail messages. NOTE: this issue might be security-relevant in cases when the trailing contents of e-mail messages are important, such as logging information or if the message is expected to be well-formed.  Assigned (20070327)  None (candidate not yet proposed)    View
90610  CVE-2016-3791  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20160330)  None (candidate not yet proposed)    View
25330  CVE-2007-1973  Candidate  Race condition in the Virtual DOS Machine (VDM) in the Windows Kernel in Microsoft Windows NT 4.0 allows local users to modify memory and gain privileges via the temporary DevicePhysicalMemory section handle, a related issue to CVE-2007-1206.  Assigned (20070411)  None (candidate not yet proposed)    View
90866  CVE-2016-4047  Candidate  An issue was discovered in Open-Xchange OX App Suite before 7.8.1-rev8. References to external Open XML document type definitions (.dtd resources) can be placed within .docx and .xslx files. Those resources were requested when parsing certain parts of the generated document. As a result an attacker can track access to a manipulated document. Usage of a document may get tracked and information about internal infrastructure may get exposed.  Assigned (20160420)  None (candidate not yet proposed)    View

Page 19256 of 20943, showing 5 records out of 104715 total, starting on record 96276, ending on 96280

Actions