CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10769 | CVE-2004-2343 | Candidate | ** DISPUTED ** Apache HTTP Server 2.0.47 and earlier allows local users to bypass .htaccess file restrictions, as specified in httpd.conf with directives such as Deny From All, by using an ErrorDocument directive. NOTE: the vendor has disputed this issue, since the .htaccess mechanism is only intended to restrict external web access, and a local user already has the privileges to perform the same operations without using ErrorDocument. | Assigned (20050816) | None (candidate not yet proposed) | View | |
76305 | CVE-2014-9004 | Candidate | Cross-site scripting (XSS) vulnerability in vldPersonals before 2.7.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter in a member_profile action to index.php. | Assigned (20141119) | None (candidate not yet proposed) | View | |
11025 | CVE-2004-2599 | Candidate | Multiple buffer overflows in Quake II server before R1Q2, as used in multiple products, allow local users to cause a denial of service (application crash) via the server console or rcon. | Assigned (20051129) | None (candidate not yet proposed) | View | |
76561 | CVE-2014-9260 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20141204) | None (candidate not yet proposed) | View | |
11281 | CVE-2005-0075 | Candidate | prefs.php in SquirrelMail before 1.4.4, with register_globals enabled, allows remote attackers to inject local code into the SquirrelMail code via custom preference handlers. | Assigned (20050114) | None (candidate not yet proposed) | View |
Page 1359 of 20943, showing 5 records out of 104715 total, starting on record 6791, ending on 6795