CVE List

Id CVE No. Status Description Phase Votes Comments Actions
72169  CVE-2014-4872  Candidate  BMC Track-It! 11.3.0.355 does not require authentication on TCP port 9010, which allows remote attackers to upload arbitrary files, execute arbitrary code, or obtain sensitive credential and configuration information via a .NET Remoting request to (1) FileStorageService or (2) ConfigurationService.  Assigned (20140710)  None (candidate not yet proposed)    View
72425  CVE-2014-5128  Candidate  Innovative Interfaces Encore Discovery Solution 4.3 places a session token in the URI, which might allow remote attackers to obtain sensitive information via unspecified vectors.  Assigned (20140730)  None (candidate not yet proposed)    View
7145  CVE-2003-0317  Candidate  iisPROTECT 2.1 and 2.2 allows remote attackers to bypass authentication via an HTTP request containing URL-encoded characters.  Assigned (20030519)  None (candidate not yet proposed)    View
72681  CVE-2014-5384  Candidate  The VIQR module in the iconv implementation in FreeBSD 10.0 before p6 and NetBSD allows context-dependent attackers to cause a denial of service (out-of-bounds array access) via a crafted argument to the iconv_open function. NOTE: this issue was SPLIT from CVE-2014-3951 per ADT2 due to different vulnerability types.  Assigned (20140821)  None (candidate not yet proposed)    View
7401  CVE-2003-0574  Candidate  Unknown vulnerability in SGI IRIX 6.5.x through 6.5.20, and possibly earlier versions, allows local users to cause a core dump in scheme and possibly gain privileges via certain environment variables, a different vulnerability than CVE-2001-0797 and CVE-1999-0028.  Assigned (20030716)  None (candidate not yet proposed)    View

Page 19110 of 20943, showing 5 records out of 104715 total, starting on record 95546, ending on 95550

Actions