CVE List

Id CVE No. Status Description Phase Votes Comments Actions
86525  CVE-2016-0229  Candidate  Cross-site scripting (XSS) vulnerability in IBM Marketing Platform 8.6.x and 9.x before 9.1.2.2 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.  Assigned (20151208)  None (candidate not yet proposed)    View
21245  CVE-2006-5141  Candidate  PHP remote file inclusion vulnerability in script.php in Kevin A. Gordon Open Geo Targeting (aka geotarget) allows remote attackers to execute arbitrary PHP code via a URL in the anp_path parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information.  Assigned (20061002)  None (candidate not yet proposed)    View
86781  CVE-2016-0485  Candidate  Unspecified vulnerability in the Oracle Application Testing Suite component in Oracle Enterprise Manager Grid Control 12.4.0.2 and 12.5.0.2 allows remote attackers to affect confidentiality via unknown vectors related to Test Manager for Web Apps, a different vulnerability than CVE-2016-0480, CVE-2016-0481, CVE-2016-0482, and CVE-2016-0486. NOTE: the previous information is from the January 2016 CPU. Oracle has not commented on third-party claims that this is a directory traversal vulnerability in the DownloadServlet servlet, which allows remote attackers to read arbitrary files via directory traversal sequences in the reportName parameter.  Assigned (20151209)  None (candidate not yet proposed)    View
21501  CVE-2006-5397  Candidate  The Xinput module (modules/im/ximcp/imLcIm.c) in X.Org libX11 1.0.2 and 1.0.3 opens a file for reading twice using the same file descriptor, which causes a file descriptor leak that allows local users to read files specified by the XCOMPOSEFILE environment variable via the duplicate file descriptor.  Assigned (20061018)  None (candidate not yet proposed)    View
87037  CVE-2016-0741  Candidate  slapd/connection.c in 389 Directory Server (formerly Fedora Directory Server) 1.3.4.x before 1.3.4.7 allows remote attackers to cause a denial of service (infinite loop and connection blocking) by leveraging an abnormally closed connection.  Assigned (20151216)  None (candidate not yet proposed)    View

Page 20734 of 20943, showing 5 records out of 104715 total, starting on record 103666, ending on 103670

Actions