CVE List

Id CVE No. Status Description Phase Votes Comments Actions
81902  CVE-2015-4625  Candidate  Integer overflow in the authentication_agent_new_cookie function in PolicyKit (aka polkit) before 0.113 allows local users to gain privileges by creating a large number of connections, which triggers the issuance of a duplicate cookie value.  Assigned (20150616)  None (candidate not yet proposed)    View
16622  CVE-2006-0518  Candidate  Cross-site scripting (XSS) vulnerability in index.php3 in SPIP 1.8.2-e and earlier and 1.9 Alpha 2 (5539) and earlier allows remote attackers to inject arbitrary web script or HTML via the lang parameter.  Assigned (20060202)  None (candidate not yet proposed)    View
82158  CVE-2015-4881  Candidate  Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60, and Java SE Embedded 8u51, allows remote attackers to affect confidentiality, integrity, and availability via vectors related to CORBA, a different vulnerability than CVE-2015-4835.  Assigned (20150624)  None (candidate not yet proposed)    View
16878  CVE-2006-0774  Candidate  SQL injection vulnerability in deleteSession() in DB_eSession library 1.0.2 and earlier, as used in multiple products, allows remote attackers to execute arbitrary SQL commands via the $_sess_id_set variable, which is usually derived from PHPSESSID.  Assigned (20060218)  None (candidate not yet proposed)    View
82414  CVE-2015-5137  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150629)  None (candidate not yet proposed)    View

Page 19535 of 20943, showing 5 records out of 104715 total, starting on record 97671, ending on 97675

Actions