CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4875  CVE-2002-0483  Candidate  index.php for PHP-Nuke 5.4 and earlier allows remote attackers to determine the physical pathname of the web server when the file parameter is set to index.php, which triggers an error message that leaks the pathname.  Proposed (20020611)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall    View
70411  CVE-2014-3116  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140429)  None (candidate not yet proposed)    View
70667  CVE-2014-3371  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140507)  None (candidate not yet proposed)    View
5387  CVE-2002-0999  Candidate  Multiple SQL injection vulnerabilities in CARE 2002 before beta 1.0.02 allow remote attackers to perform unauthorized database operations.  Modified (20070314)  ACCEPT(3) Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall    View
70923  CVE-2014-3627  Candidate  The YARN NodeManager daemon in Apache Hadoop 0.23.0 through 0.23.11 and 2.x before 2.5.2, when using Kerberos authentication, allows remote cluster users to change the permissions of certain files to world-readable via a symlink attack in a public tar archive, which is not properly handled during localization, related to distributed cache.  Assigned (20140514)  None (candidate not yet proposed)    View

Page 1495 of 20943, showing 5 records out of 104715 total, starting on record 7471, ending on 7475

Actions