CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9751  CVE-2004-1323  Candidate  Multiple syscalls in the compat subsystem for NetBSD before 2.0 allow local users to cause a denial of service (kernel crash) via a large signal number to (1) xxx_sys_kill, (2) xxx_sys_sigaction, and possibly other translation functions.  Assigned (20050106)  None (candidate not yet proposed)    View
75287  CVE-2014-7986  Candidate  install/index.php in EspoCRM before 2.6.0 allows remote attackers to re-install the application via a 1 value in the installProcess parameter.  Assigned (20141008)  None (candidate not yet proposed)    View
10007  CVE-2004-1579  Candidate  index.php in CubeCart 2.0.1 allows remote attackers to gain sensitive information via an HTTP request with an invalid cat_id parameter, which reveals the full path in a PHP error message.  Assigned (20050220)  None (candidate not yet proposed)    View
75543  CVE-2014-8242  Candidate  librsync before 1.0.0 uses a truncated MD4 checksum to match blocks, which makes it easier for remote attackers to modify transmitted data via a birthday attack.  Assigned (20141012)  None (candidate not yet proposed)    View
10263  CVE-2004-1836  Candidate  SQL injection vulnerability in index.php in Invision Power Top Site List 1.1 RC 2 and earlier allows remote attackers to execute arbitrary SQL via the id parameter of the comments action.  Assigned (20050504)  None (candidate not yet proposed)    View

Page 1819 of 20943, showing 5 records out of 104715 total, starting on record 9091, ending on 9095

Actions