CVE List

Id CVE No. Status Description Phase Votes Comments Actions
82438  CVE-2015-5161  Candidate  The Zend_Xml_Security::scan in ZendXml before 1.0.1 and Zend Framework before 1.12.14, 2.x before 2.4.6, and 2.5.x before 2.5.2, when running under PHP-FPM in a threaded environment, allows remote attackers to bypass security checks and conduct XML external entity (XXE) and XML entity expansion (XEE) attacks via multibyte encoded characters.  Assigned (20150701)  None (candidate not yet proposed)    View
17158  CVE-2006-1054  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2006-1861. Reason: This candidate is a reservation duplicate of CVE-2006-1861. Notes: All CVE users should reference CVE-2006-1861 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20060307)  None (candidate not yet proposed)    View
82694  CVE-2015-5417  Candidate  Unspecified vulnerability in HP KeyView before 10.23.0.1 and 10.24.x before 10.24.0.1 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-2876.  Assigned (20150707)  None (candidate not yet proposed)    View
17414  CVE-2006-1310  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20060320)  None (candidate not yet proposed)    View
82950  CVE-2015-5673  Candidate  eventapp/lib/gcloud.rb in the ISUCON5 qualifier portal (aka eventapp) web application before 2015-10-30 makes improper popen calls, which allows remote attackers to execute arbitrary commands via an HTTP request that includes shell metacharacters in an argument to a "gcloud compute" command.  Assigned (20150724)  None (candidate not yet proposed)    View

Page 523 of 20943, showing 5 records out of 104715 total, starting on record 2611, ending on 2615

Actions