CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4623  CVE-2002-0231  Candidate  Buffer overflow in mIRC 5.91 and earlier allows a remote server to execute arbitrary code on the client via a long nickname.  Modified (20050528)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View
70159  CVE-2014-2864  Candidate  Multiple directory traversal vulnerabilities in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allow remote attackers to have an unspecified impact via a filename parameter containing directory traversal sequences.  Assigned (20140415)  None (candidate not yet proposed)    View
4879  CVE-2002-0487  Candidate  Intellisol Xpede 4.1 stores passwords in plaintext in a Javascript "session timeout" re-authentication capability, which could allow local users with access to gain privileges of other Xpede users by reading the password from the source file, e.g. from the browser"s cache.  Proposed (20020611)  ACCEPT(2) Cole, Frech | NOOP(4) Armstrong, Cox, Foat, Wall    View
70415  CVE-2014-3120  Candidate  The default configuration in Elasticsearch before 1.2 enables dynamic scripting, which allows remote attackers to execute arbitrary MVEL expressions and Java code via the source parameter to _search. NOTE: this only violates the vendor"s intended security policy if the user does not run Elasticsearch in its own independent virtual machine.  Assigned (20140429)  None (candidate not yet proposed)    View
5135  CVE-2002-0745  Candidate  Buffer overflow in uucp in AIX 4.3.3.  Proposed (20020726)  ACCEPT(3) Baker, Bollinger, Cole | NOOP(4) Armstrong, Cox, Foat, Wall  Bollinger> IY29518 is the AIX 4.3 APAR. AIX 5.1 APAR IY28158 needs to | be added to the References. This candidate only addressed long | arguments to uucp and uux but not the other commands listed in | CVE-2001-1164.  View

Page 1811 of 20943, showing 5 records out of 104715 total, starting on record 9051, ending on 9055

Actions