CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69912  CVE-2014-2617  Candidate  Unspecified vulnerability in HP Universal CMDB 10.01 and 10.10 allows remote attackers to execute arbitrary code or obtain sensitive information via unknown vectors, aka ZDI-CAN-2104.  Assigned (20140324)  None (candidate not yet proposed)    View
4632  CVE-2002-0240  Candidate  PHP, when installed with Apache and configured to search for index.php as a default web page, allows remote attackers to obtain the full pathname of the server via the HTTP OPTIONS method, which reveals the pathname in the resulting error message.  Proposed (20020502)  ACCEPT(2) Baker, Frech | MODIFY(1) Cox | NOOP(4) Armstrong, Cole, Foat, Wall  CHANGE> [Cox changed vote from REVIEWING to MODIFY] | Cox> Change to "....installed with Apache 2.0 for Windows"  View
70168  CVE-2014-2873  Candidate  PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 does not require authentication for access to log files, which allows remote attackers to obtain sensitive server information by using a predictable name in a request for a file.  Assigned (20140415)  None (candidate not yet proposed)    View
4888  CVE-2002-0496  Candidate  The HTTP server for SouthWest Talker server 1.0.0 allows remote attackers to cause a denial of service (server crash) via a malformed URL to port 5002.  Proposed (20020611)  ACCEPT(2) Cole, Frech | NOOP(4) Armstrong, Cox, Foat, Wall    View
70424  CVE-2014-3129  Candidate  The Java Server Pages in the Software Lifecycle Manager (SLM) in SAP NetWeaver allows remote attackers to obtain sensitive information via a crafted request, related to SAP Solution Manager 7.1.  Assigned (20140430)  None (candidate not yet proposed)    View

Page 1915 of 20943, showing 5 records out of 104715 total, starting on record 9571, ending on 9575

Actions