CVE List

Id CVE No. Status Description Phase Votes Comments Actions
65536  CVE-2013-5589  Candidate  SQL injection vulnerability in cacti/host.php in Cacti 0.8.8b and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.  Assigned (20130825)  None (candidate not yet proposed)    View
65792  CVE-2013-5845  Candidate  Unspecified vulnerability in the Oracle iLearning component in Oracle iLearning 5.2.1 and 6.0 allows remote attackers to affect integrity via unknown vectors related to Learner Administration.  Assigned (20130918)  None (candidate not yet proposed)    View
66048  CVE-2013-6101  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20131011)  None (candidate not yet proposed)    View
768  CVE-1999-0788  Entry  Arkiea nlservd allows remote attackers to conduct a denial of service.        View
66304  CVE-2013-6357  Candidate  ** DISPUTED ** Cross-site request forgery (CSRF) vulnerability in the Manager application in Apache Tomcat 5.5.25 and earlier allows remote attackers to hijack the authentication of administrators for requests that manipulate application deployment via the POST method, as demonstrated by a /manager/html/undeploy?path= URI. NOTE: the vendor disputes the significance of this report, stating that "the Apache Tomcat Security team has not accepted any reports of CSRF attacks against the Manager application ... as they require a reckless system administrator."  Assigned (20131103)  None (candidate not yet proposed)    View

Page 1 of 20943, showing 5 records out of 104715 total, starting on record 1, ending on 5

<prev 1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 last>>

Actions