CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
76007 | CVE-2014-8706 | Candidate | Pluck CMS 4.7.2 allows remote attackers to obtain sensitive information by (1) changing "PHPSESSID" to an array; (2) adding non-alphanumeric chars to "PHPSESSID"; (3) changing the image parameter to an array; or (4) changing the image parameter to a string, which reveals the installation path in an error message. | Assigned (20141109) | None (candidate not yet proposed) | View | |
10727 | CVE-2004-2301 | Candidate | Eudora before 6.1.1 allows remote attackers to cause a denial of service (crash) via an e-mail with a long "To:" field, possibly due to a buffer overflow. | Assigned (20050805) | None (candidate not yet proposed) | View | |
76263 | CVE-2014-8962 | Candidate | Stack-based buffer overflow in stream_decoder.c in libFLAC before 1.3.1 allows remote attackers to execute arbitrary code via a crafted .flac file. | Assigned (20141118) | None (candidate not yet proposed) | View | |
10983 | CVE-2004-2557 | Candidate | NetGear WG602 (aka WG602v1) Wireless Access Point 1.7.14 has a hardcoded account of username "superman" and password "21241036", which allows remote attackers to modify the configuration. | Assigned (20051121) | None (candidate not yet proposed) | View | |
76519 | CVE-2014-9218 | Candidate | libraries/common.inc.php in phpMyAdmin 4.0.x before 4.0.10.7, 4.1.x before 4.1.14.8, and 4.2.x before 4.2.13.1 allows remote attackers to cause a denial of service (resource consumption) via a long password. | Assigned (20141202) | None (candidate not yet proposed) | View |
Page 18991 of 20943, showing 5 records out of 104715 total, starting on record 94951, ending on 94955