CVE List

Id CVE No. Status Description Phase Votes Comments Actions
70163  CVE-2014-2868  Candidate  PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to modify the flow of execution of ColdFusion code by using an HTTP GET request to set a ColdFusion variable.  Assigned (20140415)  None (candidate not yet proposed)    View
4883  CVE-2002-0491  Candidate  admin.php in AlGuest 1.0 guestbook checks for the existence of the admin cookie to authenticate the AlGuest administrator, which allows remote attackers to bypass the authentication and gain privileges by setting the admin cookie to an arbitrary value.  Proposed (20020611)  ACCEPT(2) Cole, Frech | NOOP(4) Armstrong, Cox, Foat, Wall    View
70419  CVE-2014-3124  Candidate  The HVMOP_set_mem_type control in Xen 4.1 through 4.4.x allows local guest HVM administrators to cause a denial of service (hypervisor crash) or possibly execute arbitrary code by leveraging a separate qemu-dm vulnerability to trigger invalid page table translations for unspecified memory page types.  Assigned (20140429)  None (candidate not yet proposed)    View
5139  CVE-2002-0749  Candidate  CGIscript.net csMailto.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the form-attachment field.  Proposed (20020726)  NOOP(5) Armstrong, Cole, Cox, Foat, Wall    View
70675  CVE-2014-3379  Candidate  Cisco IOS XR 5.1 and earlier on Network Convergence System 6000 devices allows remote attackers to cause a denial of service (NPU and card hang or reload) via a malformed MPLS packet, aka Bug ID CSCuq10466.  Assigned (20140507)  None (candidate not yet proposed)    View

Page 1517 of 20943, showing 5 records out of 104715 total, starting on record 7581, ending on 7585

Actions