CVE List

Id CVE No. Status Description Phase Votes Comments Actions
66295  CVE-2013-6348  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Apache Struts 2.3.15.3 allow remote attackers to inject arbitrary web script or HTML via the namespace parameter to (1) actionNames.action and (2) showConfig.action in config-browser/.  Assigned (20131102)  None (candidate not yet proposed)    View
66551  CVE-2013-6604  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20131104)  None (candidate not yet proposed)    View
1271  CVE-1999-1291  Candidate  TCP/IP implementation in Microsoft Windows 95, Windows NT 4.0, and possibly others, allows remote attackers to reset connections by forcing a reset (RST) via a PSH ACK or other means, obtaining the target"s last sequence number from the resulting packet, then spoofing a reset to the target.  Proposed (20010912)  ACCEPT(3) Cole, Frech, Wall | NOOP(2) Christey, Foat  Christey> Need to get feedback from MS on this.  View
66807  CVE-2013-6860  Candidate  Unspecified vulnerability in SAP Sybase Adaptive Server Enterprise (ASE) before 15.0.3 ESD#4.3, 15.5 before 15.5 ESD#5.3, and 15.7 before 15.7 SP50 or 15.7 SP100 allows remote authenticated users to obtain sensitive information via unspecified vectors.  Assigned (20131123)  None (candidate not yet proposed)    View
1527  CVE-1999-1547  Candidate  Oracle Web Listener 2.1 allows remote attackers to bypass access restrictions by replacing a character in the URL with its HTTP-encoded (hex) equivalent.  Proposed (20010912)  MODIFY(1) Frech | NOOP(3) Cole, Foat, Wall  Frech> XF:oracle-weblistener-bypass-restrictions(8355)  View

Page 19618 of 20943, showing 5 records out of 104715 total, starting on record 98086, ending on 98090

Actions