CVE List

Id CVE No. Status Description Phase Votes Comments Actions
16118  CVE-2006-0014  Candidate  Buffer overflow in Microsoft Outlook Express 5.5 and 6 allows remote attackers to execute arbitrary code via a crafted Windows Address Book (WAB) file containing "certain Unicode strings" and modified length values.  Assigned (20051109)  None (candidate not yet proposed)    View
81654  CVE-2015-4377  Candidate  Cross-site scripting (XSS) vulnerability in unspecified administration pages in the Petition module 6.x-1.x before 6.x-1.3 for Drupal allows remote authenticated users with the "create petition" permission to inject arbitrary web script or HTML via unknown vectors.  Assigned (20150605)  None (candidate not yet proposed)    View
16374  CVE-2006-0270  Candidate  Unspecified vulnerability in the Transparent Data Encryption (TDE) Wallet component of Oracle Database server 10.2.0.1 has unspecified impact and attack vectors, as identified by Oracle Vuln# DB27. NOTE: Oracle has not disputed a reliable researcher report that TDA stores the master key without encryption, which allows local users to obtain the key via the SGA.  Assigned (20060118)  None (candidate not yet proposed)    View
81910  CVE-2015-4633  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150616)  None (candidate not yet proposed)    View
16630  CVE-2006-0526  Candidate  The default configuration of the America Online (AOL) client software allows all users to modify a certain registry value that specifies a DLL file name, which might allow local users to gain privileges via a Trojan horse program.  Assigned (20060202)  None (candidate not yet proposed)    View

Page 20171 of 20943, showing 5 records out of 104715 total, starting on record 100851, ending on 100855

Actions