CVE List

Id CVE No. Status Description Phase Votes Comments Actions
16652  CVE-2006-0548  Candidate  SQL injection vulnerability in the Oracle Text component of Oracle Database 10g, and possibly earlier versions, might allow remote attackers to execute arbitrary SQL commands via unknown vectors. NOTE: due to the lack of relevant details from the Oracle advisory, a separate CVE is being created since it cannot be conclusively proven that this issue has been addressed by Oracle. It is possible that this is the same issue as Oracle Vuln# DB15 from the January 2006 CPU, in which case this would be subsumed by CVE-2006-0260.  Assigned (20060204)  None (candidate not yet proposed)    View
82188  CVE-2015-4911  Candidate  Unspecified vulnerability in Oracle Java SE 6u101, 7u85, and 8u60; Java SE Embedded 8u51; and JRockit R28.3.7 allows remote attackers to affect availability via vectors related to JAXP, a different vulnerability than CVE-2015-4803 and CVE-2015-4893.  Assigned (20150624)  None (candidate not yet proposed)    View
16908  CVE-2006-0804  Candidate  Off-by-one error in TIN 1.8.0 and earlier might allow attackers to execute arbitrary code via unknown vectors that trigger a buffer overflow.  Assigned (20060221)  None (candidate not yet proposed)    View
82444  CVE-2015-5167  Candidate  The Policy Admin Tool in Apache Ranger before 0.5.1 allows remote authenticated users to bypass intended access restrictions via the REST API.  Assigned (20150701)  None (candidate not yet proposed)    View
17164  CVE-2006-1060  Candidate  Heap-based buffer overflow in zgv before 5.8 and xzgv before 0.8 might allow user-assisted attackers to execute arbitrary code via a JPEG image with more than 3 output components, such as a CMYK or YCCK color space, which causes less memory to be allocated than required.  Assigned (20060307)  None (candidate not yet proposed)    View

Page 984 of 20943, showing 5 records out of 104715 total, starting on record 4916, ending on 4920

Actions