CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
72205 | CVE-2014-4908 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in PNP4Nagios through 0.6.22 allow remote attackers to inject arbitrary web script or HTML via the URI used for reaching (1) share/pnp/application/views/kohana_error_page.php or (2) share/pnp/application/views/template.php, leading to improper handling within an http-equiv="refresh" META element. | Assigned (20140711) | None (candidate not yet proposed) | View | |
72461 | CVE-2014-5164 | Candidate | The rlc_decode_li function in epan/dissectors/packet-rlc.c in the RLC dissector in Wireshark 1.10.x before 1.10.9 initializes a certain structure member only after this member is used, which allows remote attackers to cause a denial of service (application crash) via a crafted packet. | Assigned (20140731) | None (candidate not yet proposed) | View | |
7181 | CVE-2003-0353 | Candidate | Buffer overflow in a component of SQL-DMO for Microsoft Data Access Components (MDAC) 2.5 through 2.7 allows remote attackers to execute arbitrary code via a long response to a broadcast request to UDP port 1434. | Assigned (20030528) | None (candidate not yet proposed) | View | |
72717 | CVE-2014-5420 | Candidate | CareFusion Pyxis SupplyStation 8.1 with hardware test tool before 1.0.16 has a hardcoded application password, which makes it easier for remote authenticated users to obtain application-file access via unspecified vectors. | Assigned (20140822) | None (candidate not yet proposed) | View | |
7437 | CVE-2003-0610 | Candidate | Directory traversal vulnerability in ePO agent for McAfee ePolicy Orchestrator 3.0 allows remote attackers to read arbitrary files via a certain HTTP request. | Assigned (20030728) | None (candidate not yet proposed) | View |
Page 1046 of 20943, showing 5 records out of 104715 total, starting on record 5226, ending on 5230