CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3813  CVE-2001-1009  Candidate  Fetchmail (aka fetchmail-ssl) before 5.8.17 allows a remote malicious (1) IMAP server or (2) POP/POP3 server to overwrite arbitrary memory and possibly gain privileges via a negative index number as part of a response to a LIST request.  Modified (20020817-01)  ACCEPT(4) Armstrong, Baker, Cole, Green | MODIFY(1) Frech | NOOP(2) Foat, Wall  Frech> XF:fetchmail-signed-integer-index(6965)  View
69349  CVE-2014-2054  Candidate  PHPExcel before 1.8.0, as used in ownCloud Server before 5.0.15 and 6.0.x before 6.0.2, does not disable external entity loading in libxml, which allows remote attackers to read arbitrary files, cause a denial of service, or possibly have other impact via an XML External Entity (XXE) attack.  Assigned (20140219)  None (candidate not yet proposed)    View
4069  CVE-2001-1265  Candidate  Directory traversal vulnerability in IBM alphaWorks Java TFTP server 1.21 allows remote attackers to conduct unauthorized operations on arbitrary files via a .. (dot dot) attack.  Proposed (20020502)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall    View
69605  CVE-2014-2310  Candidate  The AgentX subagent in Net-SNMP before 5.4.4 allows remote attackers to cause a denial of service (hang) by sending a multi-object request with an Object ID (OID) containing more subids than previous requests, a different vulnerability than CVE-2012-6151.  Assigned (20140306)  None (candidate not yet proposed)    View
4325  CVE-2001-1525  Candidate  Directory traversal vulnerability in the comments action in easyNews 1.5 and earlier allows remote attackers to modify news.dat, template.dat and possibly other files via a ".." in the cid parameter.  Assigned (20050714)  None (candidate not yet proposed)    View

Page 18800 of 20943, showing 5 records out of 104715 total, starting on record 93996, ending on 94000

Actions