CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12894  CVE-2005-1688  Candidate  Wordpress 1.5 and earlier allows remote attackers to obtain sensitive information via a direct request to files in (1) wp-content/themes/, (2) wp-includes/, or (3) wp-admin/, which reveal the path in an error message.  Assigned (20050520)  None (candidate not yet proposed)    View
26957  CVE-2007-3600  Candidate  WordPlugin in the wordintegration component in vtiger CRM before 5.0.3 allows remote authenticated users to bypass field level security permissions and merge arbitrary fields in an Email template, as demonstrated by the fields in the Contact module.  Assigned (20070706)  None (candidate not yet proposed)    View
47940  CVE-2011-0028  Candidate  WordPad in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 does not properly parse fields in Word documents, which allows remote attackers to execute arbitrary code via a crafted .doc file, aka "WordPad Converter Parsing Vulnerability."  Assigned (20101210)  None (candidate not yet proposed)    View
30226  CVE-2008-0109  Candidate  Word in Microsoft Office 2000 SP3, XP SP3, Office 2003 SP2, and Office Word Viewer 2003 allows remote attackers to execute arbitrary code via crafted fields within the File Information Block (FIB) of a Word file, which triggers length calculation errors and memory corruption.  Assigned (20080107)  None (candidate not yet proposed)    View
24559  CVE-2007-1202  Candidate  Word (or Word Viewer) in Microsoft Office 2000 SP3, XP SP3, 2003 SP2, 2004 for Mac, and Works Suite 2004, 2005, and 2006 does not properly parse certain rich text "property strings of certain control words," which allows user-assisted remote attackers to trigger heap corruption and execute arbitrary code, aka the "Word RTF Parsing Vulnerability."  Assigned (20070302)  None (candidate not yet proposed)    View

Page 152 of 20943, showing 5 records out of 104715 total, starting on record 756, ending on 760

Actions