CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
65536 | CVE-2013-5589 | Candidate | SQL injection vulnerability in cacti/host.php in Cacti 0.8.8b and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. | Assigned (20130825) | None (candidate not yet proposed) | View | |
65792 | CVE-2013-5845 | Candidate | Unspecified vulnerability in the Oracle iLearning component in Oracle iLearning 5.2.1 and 6.0 allows remote attackers to affect integrity via unknown vectors related to Learner Administration. | Assigned (20130918) | None (candidate not yet proposed) | View | |
66048 | CVE-2013-6101 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20131011) | None (candidate not yet proposed) | View | |
768 | CVE-1999-0788 | Entry | Arkiea nlservd allows remote attackers to conduct a denial of service. | View | |||
66304 | CVE-2013-6357 | Candidate | ** DISPUTED ** Cross-site request forgery (CSRF) vulnerability in the Manager application in Apache Tomcat 5.5.25 and earlier allows remote attackers to hijack the authentication of administrators for requests that manipulate application deployment via the POST method, as demonstrated by a /manager/html/undeploy?path= URI. NOTE: the vendor disputes the significance of this report, stating that "the Apache Tomcat Security team has not accepted any reports of CSRF attacks against the Manager application ... as they require a reckless system administrator." | Assigned (20131103) | None (candidate not yet proposed) | View |
Page 1 of 20943, showing 5 records out of 104715 total, starting on record 1, ending on 5