CVE List

Id CVE No. Status Description Phase Votes Comments Actions
81652  CVE-2015-4375  Candidate  The Chaos tool suite (ctools) module 7.x-1.x before 7.x-1.7 for Drupal allows remote attackers to obtain sensitive node titles via (1) an autocomplete search on custom entities without an access query tag or (2) leveraging knowledge of the ID of an entity.  Assigned (20150605)  None (candidate not yet proposed)    View
16372  CVE-2006-0268  Candidate  Unspecified vulnerability in the Security component of Oracle Database server 9.0.1.5, 9.0.1.5 FIPS, 9.2.0.6, and 10.1.0.4 has unspecified impact and attack vectors, as identified by Oracle Vuln# DB21.  Assigned (20060118)  None (candidate not yet proposed)    View
81908  CVE-2015-4631  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150616)  None (candidate not yet proposed)    View
16628  CVE-2006-0524  Candidate  Cross-site scripting (XSS) vulnerability in ashnews.php in Derek Ashauer ashNews 0.83 allows remote attackers to inject arbitrary web script or HTML via the id parameter.  Assigned (20060202)  None (candidate not yet proposed)    View
82164  CVE-2015-4887  Candidate  Unspecified vulnerability in the PeopleSoft Enterprise HCM component in Oracle PeopleSoft Products 9.2 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors related to ePerformance.  Assigned (20150624)  None (candidate not yet proposed)    View

Page 20012 of 20943, showing 5 records out of 104715 total, starting on record 100056, ending on 100060

Actions