CVE List

Id CVE No. Status Description Phase Votes Comments Actions
21238  CVE-2006-5134  Candidate  Mercury SiteScope 8.2 (8.1.2.0) allows remote authenticated users to cause a denial of service (loss of connectivity to the classic interface) via attempted HTML injection into the "new monitor description" field.  Assigned (20061002)  None (candidate not yet proposed)    View
86774  CVE-2016-0478  Candidate  Unspecified vulnerability in the Oracle Application Testing Suite component in Oracle Enterprise Manager Grid Control 12.4.0.2 and 12.5.0.2 allows remote attackers to affect confidentiality via unknown vectors related to Load Testing for Web Apps, a different vulnerability than CVE-2016-0476 and CVE-2016-0477. NOTE: the previous information is from the January 2016 CPU. Oracle has not commented on third-party claims that this is a directory traversal vulnerability in the DownloadServlet servlet, which allows remote attackers to read arbitrary files via directory traversal sequences in the scriptName parameter.  Assigned (20151209)  None (candidate not yet proposed)    View
21494  CVE-2006-5390  Candidate  PHP remote file inclusion vulnerability in includes/functions_mod_user.php in the ACP User Registration (MMW) 1.00 module for phpBB allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.  Assigned (20061018)  None (candidate not yet proposed)    View
87030  CVE-2016-0734  Candidate  The web-based administration console in Apache ActiveMQ 5.x before 5.13.2 does not send an X-Frame-Options HTTP header, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web page that contains a (1) FRAME or (2) IFRAME element.  Assigned (20151216)  None (candidate not yet proposed)    View
21750  CVE-2006-5646  Candidate  Heap-based buffer overflow in Sophos Anti-Virus and Endpoint Security before 6.0.5, Anti-Virus for Linux before 5.0.10, and other platforms before 4.11, when archive scanning is enabled, allows remote attackers to trigger a denial of service (memory corruption) via a CHM file with an LZX decompression header that specifies a Window_size of 0.  Assigned (20061101)  None (candidate not yet proposed)    View

Page 20179 of 20943, showing 5 records out of 104715 total, starting on record 100891, ending on 100895

Actions