CVE List

Id CVE No. Status Description Phase Votes Comments Actions
76007  CVE-2014-8706  Candidate  Pluck CMS 4.7.2 allows remote attackers to obtain sensitive information by (1) changing "PHPSESSID" to an array; (2) adding non-alphanumeric chars to "PHPSESSID"; (3) changing the image parameter to an array; or (4) changing the image parameter to a string, which reveals the installation path in an error message.  Assigned (20141109)  None (candidate not yet proposed)    View
10727  CVE-2004-2301  Candidate  Eudora before 6.1.1 allows remote attackers to cause a denial of service (crash) via an e-mail with a long "To:" field, possibly due to a buffer overflow.  Assigned (20050805)  None (candidate not yet proposed)    View
76263  CVE-2014-8962  Candidate  Stack-based buffer overflow in stream_decoder.c in libFLAC before 1.3.1 allows remote attackers to execute arbitrary code via a crafted .flac file.  Assigned (20141118)  None (candidate not yet proposed)    View
10983  CVE-2004-2557  Candidate  NetGear WG602 (aka WG602v1) Wireless Access Point 1.7.14 has a hardcoded account of username "superman" and password "21241036", which allows remote attackers to modify the configuration.  Assigned (20051121)  None (candidate not yet proposed)    View
76519  CVE-2014-9218  Candidate  libraries/common.inc.php in phpMyAdmin 4.0.x before 4.0.10.7, 4.1.x before 4.1.14.8, and 4.2.x before 4.2.13.1 allows remote attackers to cause a denial of service (resource consumption) via a long password.  Assigned (20141202)  None (candidate not yet proposed)    View

Page 18968 of 20943, showing 5 records out of 104715 total, starting on record 94836, ending on 94840

Actions