CVE List

Id CVE No. Status Description Phase Votes Comments Actions
71172  CVE-2014-3876  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Frams" Fast File EXchange (F*EX, aka fex) before fex-20140530 allow remote attackers to inject arbitrary web script or HTML via the (1) akey parameter to rup or (2) disclaimer or (3) gm parameter to fuc.  Assigned (20140527)  None (candidate not yet proposed)    View
71428  CVE-2014-4132  Candidate  Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-4130 and CVE-2014-4138.  Assigned (20140612)  None (candidate not yet proposed)    View
6148  CVE-2002-1766  Candidate  Buffer overflow in Composer in Netscape 4.77 allows local users to overwrite process memory and execute arbitrary code via a font tag with a long face attribute.  Assigned (20050621)  None (candidate not yet proposed)    View
71684  CVE-2014-4388  Candidate  IOKit in Apple iOS before 8 and Apple TV before 7 does not properly validate IODataQueue object metadata, which allows attackers to execute arbitrary code in a privileged context via an application that provides crafted values in unspecified metadata fields, a different vulnerability than CVE-2014-4418.  Assigned (20140620)  None (candidate not yet proposed)    View
6404  CVE-2002-2022  Candidate  Format string vulnerability in Kaffe OpenVM 1.0.6 and earlier allows local users to execute arbitrary code, when a java.lang.NoClassDefFoundError is thrown, via format specifiers in the forName attribute.  Assigned (20050714)  None (candidate not yet proposed)    View

Page 1475 of 20943, showing 5 records out of 104715 total, starting on record 7371, ending on 7375

Actions