CVE List

Id CVE No. Status Description Phase Votes Comments Actions
89865  CVE-2016-3046  Candidate  IBM Security Access Manager for Web is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements which could allow the attacker to view information in the back-end database.  Assigned (20160309)  None (candidate not yet proposed)    View
24585  CVE-2007-1228  Candidate  IBM DB2 UDB 8.2 before Fixpak 7 (aka fixpack 14), and DB2 9 before Fix Pack 2, on UNIX allows the "fenced" user to access certain unauthorized directories.  Assigned (20070302)  None (candidate not yet proposed)    View
90121  CVE-2016-3302  Candidate  Microsoft Windows 8.1, Windows Server 2012 R2, Windows RT 8.1, and Windows 10 Gold, 1511, and 1607, when the lock screen is enabled, do not properly restrict the loading of web content, which allows physically proximate attackers to execute arbitrary code via a (1) crafted Wi-Fi access point or (2) crafted mobile-broadband device, aka "Windows Lock Screen Elevation of Privilege Vulnerability."  Assigned (20160315)  None (candidate not yet proposed)    View
24841  CVE-2007-1484  Candidate  The array_user_key_compare function in PHP 4.4.6 and earlier, and 5.x up to 5.2.1, makes erroneous calls to zval_dtor, which triggers memory corruption and allows local users to bypass safe_mode and execute arbitrary code via a certain unset operation after array_user_key_compare has been called.  Assigned (20070316)  None (candidate not yet proposed)    View
90377  CVE-2016-3558  Candidate  Unspecified vulnerability in the Oracle Email Center component in Oracle E-Business Suite 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect integrity via vectors related to Email Center Agent Console, a different vulnerability than CVE-2016-3559.  Assigned (20160317)  None (candidate not yet proposed)    View

Page 763 of 20943, showing 5 records out of 104715 total, starting on record 3811, ending on 3815

Actions