CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4370 | CVE-2001-1570 | Candidate | Windows XP with fast user switching and account lockout enabled allows local users to deny user account access by setting the fast user switch to the same user (self) multiple times, which causes other accounts to be locked out. | Assigned (20050714) | None (candidate not yet proposed) | View | |
69906 | CVE-2014-2611 | Candidate | Directory traversal vulnerability in the fndwar web application in HP Executive Scorecard 9.40 and 9.41 allows remote authenticated users to execute arbitrary code, or obtain sensitive information or delete data, via unspecified vectors, aka ZDI-CAN-2120. | Assigned (20140324) | None (candidate not yet proposed) | View | |
4626 | CVE-2002-0234 | Candidate | NetScreen ScreenOS before 2.6.1 does not support a maximum number of concurrent sessions for a system, which allows an attacker on the trusted network to cause a denial of service (resource exhaustion) via a port scan to an external network, which consumes all available connections. | Proposed (20020502) | ACCEPT(2) Cole, Green | NOOP(2) Foat, Wall | View | |
70162 | CVE-2014-2867 | Candidate | Unrestricted file upload vulnerability in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to execute arbitrary code by uploading a ColdFusion page, and then accessing it via unspecified vectors. | Assigned (20140415) | None (candidate not yet proposed) | View | |
4882 | CVE-2002-0490 | Entry | Instant Web Mail before 0.60 does not properly filter CR/LF sequences, which allows remote attackers to (1) execute arbitrary POP commands via the id parameter in message.php, or (2) modify certain mail message headers via numerous parameters in write.php. | View |
Page 1457 of 20943, showing 5 records out of 104715 total, starting on record 7281, ending on 7285