CVE List

Id CVE No. Status Description Phase Votes Comments Actions
16122  CVE-2006-0018  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2005-3899. Reason: This candidate is a duplicate of CVE-2005-3899. Notes: All CVE users should reference CVE-2005-3899 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20051129)  None (candidate not yet proposed)    View
81658  CVE-2015-4381  Candidate  Cross-site scripting (XSS) vulnerability in the Invoice module 6.x-1.x before 6.x-1.2 and 7.x-1.x before 7.x-1.3 for Drupal allows remote authenticated users with the "Administer own invoices" permission to inject arbitrary web script or HTML via unspecified vectors involving nodes of the "Invoice" content type.  Assigned (20150605)  None (candidate not yet proposed)    View
16378  CVE-2006-0274  Candidate  Unspecified vulnerability in the Oracle Reports Developer component of Oracle Application Server 9.0.4.2 and 10.1.2.0.2 has unspecified impact and attack vectors, as identified by Oracle Vuln# REP03.  Assigned (20060118)  None (candidate not yet proposed)    View
81914  CVE-2015-4637  Candidate  The REST API in F5 BIG-IQ Cloud, Device, and Security 4.4.0 and 4.5.0 before HF2 and ADC 4.5.0 before HF2, when configured for LDAP remote authentication and the LDAP server allows anonymous BIND operations, allows remote attackers to obtain an authentication token for arbitrary users by guessing an LDAP user account name.  Assigned (20150616)  None (candidate not yet proposed)    View
16634  CVE-2006-0530  Candidate  Computer Associates (CA) Message Queuing (CAM / CAFT) before 1.07 Build 220_16 and 1.11 Build 29_20, as used in multiple CA products, allows remote attackers to cause a denial of service via spoofed CAM control messages.  Assigned (20060202)  None (candidate not yet proposed)    View

Page 20486 of 20943, showing 5 records out of 104715 total, starting on record 102426, ending on 102430

Actions