CVE List

Id CVE No. Status Description Phase Votes Comments Actions
34796  CVE-2008-4679  Candidate  The Web Services Security component in IBM WebSphere Application Server (WAS) 6.0.2 before 6.0.2.31 and 6.1 before 6.1.0.19, when Certificate Store Collections is configured to use Certificate Revocation Lists (CRL), does not call the setRevocationEnabled method on the PKIXBuilderParameters object, which prevents the "Java security method" from checking the revocation status of X.509 certificates and allows remote attackers to bypass intended access restrictions via a SOAP message with a revoked certificate.  Assigned (20081022)  None (candidate not yet proposed)    View
100332  CVE-2017-3512  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161206)  None (candidate not yet proposed)    View
35052  CVE-2008-4935  Candidate  asciiview in aview 1.3.0 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/aview#####.pgm temporary file.  Assigned (20081105)  None (candidate not yet proposed)    View
100588  CVE-2017-3768  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20161216)  None (candidate not yet proposed)    View
35308  CVE-2008-5191  Candidate  Multiple SQL injection vulnerabilities in SePortal 2.4 allow remote attackers to execute arbitrary SQL commands via the (1) poll_id parameter to poll.php and the (2) sp_id parameter to staticpages.php.  Assigned (20081121)  None (candidate not yet proposed)    View

Page 19394 of 20943, showing 5 records out of 104715 total, starting on record 96966, ending on 96970

Actions