CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
14340 | CVE-2005-3134 | Candidate | Citrix Metaframe Presentation Server 3.0 and 4.0 allows remote attackers to bypass policy restrictions by downloading the launch.ica file and changing the client device name (ClientName). | Assigned (20051004) | None (candidate not yet proposed) | View | |
79876 | CVE-2015-2599 | Candidate | Unspecified vulnerability in the RDBMS Scheduler component in Oracle Database Server 11.1.0.7, 11.2.0.3, 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows remote authenticated users to affect confidentiality via unknown vectors. | Assigned (20150320) | None (candidate not yet proposed) | View | |
14596 | CVE-2005-3390 | Candidate | The RFC1867 file upload feature in PHP 4.x up to 4.4.0 and 5.x up to 5.0.5, when register_globals is enabled, allows remote attackers to modify the GLOBALS array and bypass security protections of PHP applications via a multipart/form-data POST request with a "GLOBALS" fileupload field. | Assigned (20051101) | None (candidate not yet proposed) | View | |
80132 | CVE-2015-2855 | Candidate | The WebUI component in Blue Coat SSL Visibility Appliance SV800, SV1800, SV2800, and SV3800 3.6.x through 3.8.x before 3.8.4 does not set the secure flag for the administrator"s cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session, a different vulnerability than CVE-2015-4138. | Assigned (20150403) | None (candidate not yet proposed) | View | |
14852 | CVE-2005-3648 | Candidate | Multiple SQL injection vulnerabilities in the get_record function in datalib.php in Moodle 1.5.2 allow remote attackers to execute arbitrary SQL commands via the id parameter in (1) category.php and (2) info.php. | Assigned (20051117) | None (candidate not yet proposed) | View |
Page 345 of 20943, showing 5 records out of 104715 total, starting on record 1721, ending on 1725