NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 15727 | CVE-2010-4472 | Unspecified vulnerability in the Java Runtime Environment (JRE) in Oracle Java SE and Java for Business 6 Update 23 and earlier allows remote attackers to affect availability, related to XML Digital Signature and unspecified APIs. NOTE: the previous information was obtained from the February 2011 CPU. Oracle has not commented on claims from a downstream vendor that this issue involves the replacement of the "XML DSig Transform or C14N algorithm implementations." | 2 | 2.6 | Low | 2017-01-18 | 2016-08-22 | View | |
| 28015 | CVE-2015-7412 | The GatewayScript modules on IBM DataPower Gateways with software 7.2.0.x before 7.2.0.1, when the GatewayScript decryption API or a JWE decrypt action is enabled, do not require signed ciphertext data, which makes it easier for remote attackers to obtain plaintext data via a padding-oracle attack. | 2 | 2.6 | Low | 2017-01-19 | 2015-11-09 | View | |
| 49519 | CVE-2009-2268 | Cross-site scripting (XSS) vulnerability in the Cross-Domain Controller (CDC) servlet in Sun Java System Access Manager 6 2005Q1, 7 2005Q4, and 7.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 2.6 | Low | 2017-01-07 | 2010-05-25 | View | |
| 1136 | CVE-2008-1176 | Cross-site scripting (XSS) vulnerability in function/sideblock.php in Affiliate Market (affmarket) 0.1 BETA allows remote attackers to inject arbitrary web script or HTML via the sideblock4 parameter. | 2 | 2.6 | Low | 2017-01-03 | 2008-09-05 | View | |
| 5232 | CVE-2008-5460 | Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 10.3, 10.0 MP1, 9.2 MP3, 9.1, and 9.0 allows remote attackers to affect confidentiality via unknown vectors. | 2 | 2.6 | Low | 2017-01-03 | 2012-10-22 | View |
Page 15313 of 17672, showing 5 records out of 88360 total, starting on record 76561, ending on 76565