CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10501 | CVE-2004-2075 | Candidate | Sophos Anti-Virus 3.78 allows remote attackers to cause a denial of service (infinite loop) via a MIME header that is not properly terminated. | Assigned (20050519) | None (candidate not yet proposed) | View | |
76037 | CVE-2014-8736 | Candidate | The Open Atrium Core module for Drupal before 7.x-2.22 allows remote attackers to bypass access restrictions and read file attachments that have been removed from a node by leveraging a previous revision of the node. | Assigned (20141112) | None (candidate not yet proposed) | View | |
10757 | CVE-2004-2331 | Candidate | ColdFusion MX 6.1 and 6.1 J2EE allows local users to bypass sandbox security restrictions and obtain sensitive information by using Java reflection methods to access trusted Java objects without using the CreateObject function or cfobject tag. | Assigned (20050816) | None (candidate not yet proposed) | View | |
76293 | CVE-2014-8992 | Candidate | Cross-site scripting (XSS) vulnerability in manager/assets/fileapi/FileAPI.flash.image.swf in MODX Revolution 2.3.2-pl allows remote attackers to inject arbitrary web script or HTML via the callback parameter. | Assigned (20141119) | None (candidate not yet proposed) | View | |
11013 | CVE-2004-2587 | Candidate | login.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote attackers to cause a denial of service via a long txtusername parameter, possibly due to a buffer overflow. | Assigned (20051128) | None (candidate not yet proposed) | View |
Page 1025 of 20943, showing 5 records out of 104715 total, starting on record 5121, ending on 5125