CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4623 | CVE-2002-0231 | Candidate | Buffer overflow in mIRC 5.91 and earlier allows a remote server to execute arbitrary code on the client via a long nickname. | Modified (20050528) | ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall | View | |
70159 | CVE-2014-2864 | Candidate | Multiple directory traversal vulnerabilities in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allow remote attackers to have an unspecified impact via a filename parameter containing directory traversal sequences. | Assigned (20140415) | None (candidate not yet proposed) | View | |
4879 | CVE-2002-0487 | Candidate | Intellisol Xpede 4.1 stores passwords in plaintext in a Javascript "session timeout" re-authentication capability, which could allow local users with access to gain privileges of other Xpede users by reading the password from the source file, e.g. from the browser"s cache. | Proposed (20020611) | ACCEPT(2) Cole, Frech | NOOP(4) Armstrong, Cox, Foat, Wall | View | |
70415 | CVE-2014-3120 | Candidate | The default configuration in Elasticsearch before 1.2 enables dynamic scripting, which allows remote attackers to execute arbitrary MVEL expressions and Java code via the source parameter to _search. NOTE: this only violates the vendor"s intended security policy if the user does not run Elasticsearch in its own independent virtual machine. | Assigned (20140429) | None (candidate not yet proposed) | View | |
5135 | CVE-2002-0745 | Candidate | Buffer overflow in uucp in AIX 4.3.3. | Proposed (20020726) | ACCEPT(3) Baker, Bollinger, Cole | NOOP(4) Armstrong, Cox, Foat, Wall | Bollinger> IY29518 is the AIX 4.3 APAR. AIX 5.1 APAR IY28158 needs to | be added to the References. This candidate only addressed long | arguments to uucp and uux but not the other commands listed in | CVE-2001-1164. | View |
Page 1811 of 20943, showing 5 records out of 104715 total, starting on record 9051, ending on 9055