CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
2793 | CVE-2000-1226 | Candidate | Snort 1.6, when running in straight ASCII packet logging mode or IDS mode with straight decoded ASCII packet logging selected, allows remote attackers to cause a denial of service (crash) by sending non-IP protocols that Snort does not know about, as demonstrated by an nmap protocol scan. | Assigned (20050621) | None (candidate not yet proposed) | View | |
68329 | CVE-2014-0920 | Candidate | IBM SPSS Analytic Server 1.0 before IF002 and 1.0.1 before IF004 logs cleartext passwords, which allows remote authenticated users to obtain sensitive information via unspecified vectors. | Assigned (20140106) | None (candidate not yet proposed) | View | |
3049 | CVE-2001-0228 | Candidate | Directory traversal vulnerability in GoAhead web server 2.1 and earlier allows remote attackers to read arbitrary files via a .. attack in an HTTP GET request. | Proposed (20010309) | MODIFY(1) Frech | NOOP(2) Lawler, Ziese | Frech> XF:goahead-directory-traversal(6046) | View |
68585 | CVE-2014-1290 | Candidate | WebKit, as used in Apple iOS before 7.1 and Apple TV before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-1289, CVE-2014-1291, CVE-2014-1292, CVE-2014-1293, and CVE-2014-1294. | Assigned (20140108) | None (candidate not yet proposed) | View | |
68841 | CVE-2014-1546 | Candidate | The response function in the JSONP endpoint in WebService/Server/JSONRPC.pm in jsonrpc.cgi in Bugzilla 3.x and 4.x before 4.0.14, 4.1.x and 4.2.x before 4.2.10, 4.3.x and 4.4.x before 4.4.5, and 4.5.x before 4.5.5 accepts certain long callback values and does not restrict the initial bytes of a JSONP response, which allows remote attackers to conduct cross-site request forgery (CSRF) attacks, and obtain sensitive information, via a crafted OBJECT element with SWF content consistent with the _bz_callback character set. | Assigned (20140116) | None (candidate not yet proposed) | View |
Page 19116 of 20943, showing 5 records out of 104715 total, starting on record 95576, ending on 95580