CVE List

Id CVE No. Status Description Phase Votes Comments Actions
71414  CVE-2014-4118  Candidate  XML Core Services (aka MSXML) 3.0 in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows remote attackers to execute arbitrary code or cause a denial of service (system-state corruption) via crafted XML content, aka "MSXML Remote Code Execution Vulnerability."  Assigned (20140612)  None (candidate not yet proposed)    View
6134  CVE-2002-1752  Candidate  csChatRBox.cgi in CGIScript.net csChat-R-Box allows remote attackers to execute arbitrary Perl code via the setup parameter, which is processed by the Perl eval function.  Assigned (20050621)  None (candidate not yet proposed)    View
71670  CVE-2014-4374  Candidate  NSXMLParser in Foundation in Apple iOS before 8 allows attackers to read arbitrary files via XML data containing an external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.  Assigned (20140620)  None (candidate not yet proposed)    View
6390  CVE-2002-2008  Candidate  Apache Tomcat 4.0.3 for Windows allows remote attackers to obtain the web root path via an HTTP request for a resource that does not exist, such as lpt9, which leaks the information in an error message.  Assigned (20050714)  None (candidate not yet proposed)    View
71926  CVE-2014-4629  Candidate  EMC Documentum Content Server 7.0, 7.1 before 7.1 P10, and 6.7 before SP2 P19 allows remote authenticated users to read or delete arbitrary files via unspecified vectors related to an insecure direct object reference.  Assigned (20140624)  None (candidate not yet proposed)    View

Page 19018 of 20943, showing 5 records out of 104715 total, starting on record 95086, ending on 95090

Actions