CVE List

Id CVE No. Status Description Phase Votes Comments Actions
75776  CVE-2014-8475  Candidate  FreeBSD 9.1, 9.2, and 10.0, when compiling OpenSSH with Kerberos support, uses incorrect library ordering when linking sshd, which causes symbols to be resolved incorrectly and allows remote attackers to cause a denial of service (sshd deadlock and prevention of new connections) by ending multiple connections before authentication is completed.  Assigned (20141024)  None (candidate not yet proposed)    View
10496  CVE-2004-2070  Candidate  The Altiris Client Service for Windows 5.6 SP1 Hotfix E (5.6.181) allows local users to execute arbitrary commands by opening the AClient tray icon and using the View Log File option, a different vulnerability than CVE-2005-1590.  Assigned (20050516)  None (candidate not yet proposed)    View
76032  CVE-2014-8731  Candidate  PHPMemcachedAdmin 1.2.2 and earlier allows remote attackers to execute arbitrary PHP code via vectors related "serialized data and the last part of the concatenated filename," which creates a file in webroot.  Assigned (20141110)  None (candidate not yet proposed)    View
10752  CVE-2004-2326  Candidate  SQL injection vulnerability in IP3 Networks NetAccess Appliance before firmware 3.1.18b13 allows remote attackers to bypass authentication via the (1) login or (2) password. NOTE: this issue was later reported to also affect firmware 4.0.34.  Assigned (20050816)  None (candidate not yet proposed)    View
76288  CVE-2014-8987  Candidate  Cross-site scripting (XSS) vulnerability in the "set configuration" box in the Configuration Report page (adm_config_report.php) in MantisBT 1.2.13 through 1.2.17 allows remote administrators to inject arbitrary web script or HTML via the config_option parameter, a different vulnerability than CVE-2014-8986.  Assigned (20141119)  None (candidate not yet proposed)    View

Page 1172 of 20943, showing 5 records out of 104715 total, starting on record 5856, ending on 5860

Actions