CVE List

Id CVE No. Status Description Phase Votes Comments Actions
89862  CVE-2016-3043  Candidate  IBM Security Access Manager for Web could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques.  Assigned (20160309)  None (candidate not yet proposed)    View
24582  CVE-2007-1225  Candidate  The connection log file implementation in Grok Developments NetProxy 4.03 does not record requests that omit http:// in a URL, which might allow remote attackers to conduct unauthorized activities and avoid detection.  Assigned (20070302)  None (candidate not yet proposed)    View
90118  CVE-2016-3299  Candidate  Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allow remote attackers to hijack network traffic or bypass intended Enhanced Protected Mode (EPM) or application container protection mechanisms, and consequently render untrusted content in a browser, by leveraging how NetBIOS validates responses, aka "NetBIOS Spoofing Vulnerability."  Assigned (20160315)  None (candidate not yet proposed)    View
24838  CVE-2007-1481  Candidate  SQL injection vulnerability in index.php in WBBlog allows remote attackers to execute arbitrary SQL commands via the e_id parameter in a viewentry cmd.  Assigned (20070316)  None (candidate not yet proposed)    View
90374  CVE-2016-3555  Candidate  Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote attackers to affect confidentiality and integrity via vectors related to PGC / Excel Plugin.  Assigned (20160317)  None (candidate not yet proposed)    View

Page 517 of 20943, showing 5 records out of 104715 total, starting on record 2581, ending on 2585

Actions