CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
72169 | CVE-2014-4872 | Candidate | BMC Track-It! 11.3.0.355 does not require authentication on TCP port 9010, which allows remote attackers to upload arbitrary files, execute arbitrary code, or obtain sensitive credential and configuration information via a .NET Remoting request to (1) FileStorageService or (2) ConfigurationService. | Assigned (20140710) | None (candidate not yet proposed) | View | |
72425 | CVE-2014-5128 | Candidate | Innovative Interfaces Encore Discovery Solution 4.3 places a session token in the URI, which might allow remote attackers to obtain sensitive information via unspecified vectors. | Assigned (20140730) | None (candidate not yet proposed) | View | |
7145 | CVE-2003-0317 | Candidate | iisPROTECT 2.1 and 2.2 allows remote attackers to bypass authentication via an HTTP request containing URL-encoded characters. | Assigned (20030519) | None (candidate not yet proposed) | View | |
72681 | CVE-2014-5384 | Candidate | The VIQR module in the iconv implementation in FreeBSD 10.0 before p6 and NetBSD allows context-dependent attackers to cause a denial of service (out-of-bounds array access) via a crafted argument to the iconv_open function. NOTE: this issue was SPLIT from CVE-2014-3951 per ADT2 due to different vulnerability types. | Assigned (20140821) | None (candidate not yet proposed) | View | |
7401 | CVE-2003-0574 | Candidate | Unknown vulnerability in SGI IRIX 6.5.x through 6.5.20, and possibly earlier versions, allows local users to cause a core dump in scheme and possibly gain privileges via certain environment variables, a different vulnerability than CVE-2001-0797 and CVE-1999-0028. | Assigned (20030716) | None (candidate not yet proposed) | View |
Page 19110 of 20943, showing 5 records out of 104715 total, starting on record 95546, ending on 95550