CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10501  CVE-2004-2075  Candidate  Sophos Anti-Virus 3.78 allows remote attackers to cause a denial of service (infinite loop) via a MIME header that is not properly terminated.  Assigned (20050519)  None (candidate not yet proposed)    View
76037  CVE-2014-8736  Candidate  The Open Atrium Core module for Drupal before 7.x-2.22 allows remote attackers to bypass access restrictions and read file attachments that have been removed from a node by leveraging a previous revision of the node.  Assigned (20141112)  None (candidate not yet proposed)    View
10757  CVE-2004-2331  Candidate  ColdFusion MX 6.1 and 6.1 J2EE allows local users to bypass sandbox security restrictions and obtain sensitive information by using Java reflection methods to access trusted Java objects without using the CreateObject function or cfobject tag.  Assigned (20050816)  None (candidate not yet proposed)    View
76293  CVE-2014-8992  Candidate  Cross-site scripting (XSS) vulnerability in manager/assets/fileapi/FileAPI.flash.image.swf in MODX Revolution 2.3.2-pl allows remote attackers to inject arbitrary web script or HTML via the callback parameter.  Assigned (20141119)  None (candidate not yet proposed)    View
11013  CVE-2004-2587  Candidate  login.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote attackers to cause a denial of service via a long txtusername parameter, possibly due to a buffer overflow.  Assigned (20051128)  None (candidate not yet proposed)    View

Page 1025 of 20943, showing 5 records out of 104715 total, starting on record 5121, ending on 5125

Actions