CVE List

Id CVE No. Status Description Phase Votes Comments Actions
81667  CVE-2015-4390  Candidate  Multiple cross-site request forgery (CSRF) vulnerabilities in the User Import module 6.x-4.x before 6.x-4.4 and 7.x-2.x before 7.x-2.3 for Drupal allow remote attackers to hijack the authentication of administrators for requests that (1) continue or (2) delete an ongoing import via unspecified vectors.  Assigned (20150605)  None (candidate not yet proposed)    View
16387  CVE-2006-0283  Candidate  Unspecified vulnerability in Oracle Database Server 10.1.0.4.2, Application Server 10.1.2.0.2, and Collaboration Suite Release 2, version 9.0.4.2 (Oracle9i) has unspecified impact and attack vectors, as identified by Oracle Vuln# DBC02 in the Reorganize Objects & Convert Tablespace component.  Assigned (20060118)  None (candidate not yet proposed)    View
81923  CVE-2015-4646  Candidate  (1) unsquash-1.c, (2) unsquash-2.c, (3) unsquash-3.c, and (4) unsquash-4.c in Squashfs and sasquatch allow remote attackers to cause a denial of service (application crash) via a crafted input.  Assigned (20150618)  None (candidate not yet proposed)    View
16643  CVE-2006-0539  Candidate  The convert-fcrontab program in fcron 3.0.0 might allow local users to gain privileges via a long command-line argument, which causes Linux glibc to report heap memory corruption, possibly because a strcpy in the strdup2 function can "overwrite some data."  Assigned (20060204)  None (candidate not yet proposed)    View
82179  CVE-2015-4902  Candidate  Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60 allows remote attackers to affect integrity via unknown vectors related to Deployment.  Assigned (20150624)  None (candidate not yet proposed)    View

Page 874 of 20943, showing 5 records out of 104715 total, starting on record 4366, ending on 4370

Actions