CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4327  CVE-2001-1527  Candidate  easyNews 1.5 and earlier stores administration passwords in cleartext in settings.php, which allows local users to obtain the passwords and gain access.  Assigned (20050714)  None (candidate not yet proposed)    View
69863  CVE-2014-2568  Candidate  Use-after-free vulnerability in the nfqnl_zcopy function in net/netfilter/nfnetlink_queue_core.c in the Linux kernel through 3.13.6 allows attackers to obtain sensitive information from kernel memory by leveraging the absence of a certain orphaning operation. NOTE: the affected code was moved to the skb_zerocopy function in net/core/skbuff.c before the vulnerability was announced.  Assigned (20140320)  None (candidate not yet proposed)    View
70119  CVE-2014-2824  Candidate  Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."  Assigned (20140410)  None (candidate not yet proposed)    View
4839  CVE-2002-0447  Candidate  Directory traversal vulnerability in Xerver Free Web Server 2.10 and earlier allows remote attackers to list arbitrary directories via a .. (dot dot) in an HTTP GET request.  Proposed (20020611)  ACCEPT(4) Alderson, Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall    View
70375  CVE-2014-3080  Candidate  Multiple cross-site scripting (XSS) vulnerabilities on IBM GCM16 and GCM32 Global Console Manager switches with firmware before 1.20.20.23447 allow remote attackers to inject arbitrary web script or HTML via (1) the query string to kvm.cgi or (2) the key parameter to avctalert.php.  Assigned (20140429)  None (candidate not yet proposed)    View

Page 18959 of 20943, showing 5 records out of 104715 total, starting on record 94791, ending on 94795

Actions