CVE List

Id CVE No. Status Description Phase Votes Comments Actions
82165  CVE-2015-4888  Candidate  Unspecified vulnerability in the Java VM component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2015-4796.  Assigned (20150624)  None (candidate not yet proposed)    View
16885  CVE-2006-0781  Candidate  Directory traversal vulnerability in weblog.pl in PerlBlog 1.09b and earlier allows remote attackers to read certain files via the month parameter.  Assigned (20060219)  None (candidate not yet proposed)    View
82421  CVE-2015-5144  Candidate  Django before 1.4.21, 1.5.x through 1.6.x, 1.7.x before 1.7.9, and 1.8.x before 1.8.3 uses an incorrect regular expression, which allows remote attackers to inject arbitrary headers and conduct HTTP response splitting attacks via a newline character in an (1) email message to the EmailValidator, a (2) URL to the URLValidator, or unspecified vectors to the (3) validate_ipv4_address or (4) validate_slug validator.  Assigned (20150629)  None (candidate not yet proposed)    View
17141  CVE-2006-1037  Candidate  SQL injection vulnerability in the Oracle Diagnostics module 2.2 and earlier allows remote attackers to execute arbitrary SQL commands via uknown attack vectors.  Assigned (20060307)  None (candidate not yet proposed)    View
82677  CVE-2015-5400  Candidate  Squid before 3.5.6 does not properly handle CONNECT method peer responses when configured with cache_peer, which allows remote attackers to bypass intended restrictions and gain access to a backend proxy via a CONNECT request.  Assigned (20150706)  None (candidate not yet proposed)    View

Page 20086 of 20943, showing 5 records out of 104715 total, starting on record 100426, ending on 100430

Actions