CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11031  CVE-2004-2605  Candidate  aStats 1.6.5 allows local users to overwrite arbitrary files via a symlink attack on (1) the aStats-Graphic-Signature-Generation file and (2) certain PNG image files.  Assigned (20051129)  None (candidate not yet proposed)    View
76567  CVE-2014-9266  Candidate  The STWConfig ActiveX control in Samsung SmartViewer does not properly initialize a variable, which allows remote attackers to execute arbitrary code via unspecified vectors.  Assigned (20141204)  None (candidate not yet proposed)    View
11287  CVE-2005-0081  Candidate  MySQL MaxDB 7.5.0.0, and other versions before 7.5.0.21, allows remote attackers to cause a denial of service (crash) via an HTTP request with invalid headers.  Assigned (20050118)  None (candidate not yet proposed)    View
76823  CVE-2014-9522  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in CMS Papoo Light 6.0.0 (Rev 4701) allow remote attackers to inject arbitrary web script or HTML via the (1) author field to guestbook.php or (2) username field to account.php.  Assigned (20150105)  None (candidate not yet proposed)    View
11543  CVE-2005-0337  Candidate  Postfix 2.1.3, when /proc/net/if_inet6 is not available and permit_mx_backup is enabled in smtpd_recipient_restrictions, allows remote attackers to bypass e-mail restrictions and perform mail relaying by sending mail to an IPv6 hostname.  Assigned (20050210)  None (candidate not yet proposed)    View

Page 1821 of 20943, showing 5 records out of 104715 total, starting on record 9101, ending on 9105

Actions