CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2283  CVE-2000-0707  Entry  PCCS MySQLDatabase Admin Tool Manager 1.2.4 and earlier installs the file dbconnect.inc within the web root, which allows remote attackers to obtain sensitive information such as the administrative password.        View
67819  CVE-2014-0410  Candidate  Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5889, CVE-2013-5902, CVE-2014-0415, CVE-2014-0418, and CVE-2014-0424.  Assigned (20131212)  None (candidate not yet proposed)    View
2539  CVE-2000-0970  Entry  IIS 4.0 and 5.0 .ASP pages send the same Session ID cookie for secure and insecure web sessions, which could allow remote attackers to hijack the secure web session of the user if that user moves to an insecure session, aka the "Session ID Cookie Marking" vulnerability.        View
68075  CVE-2014-0666  Candidate  Directory traversal vulnerability in the Send Screen Capture implementation in Cisco Jabber 9.2(.1) and earlier on Windows allows remote attackers to upload arbitrary types of files, and consequently execute arbitrary code, via modified packets, aka Bug ID CSCug48056.  Assigned (20140102)  None (candidate not yet proposed)    View
2795  CVE-2000-1228  Candidate  Phorum 3.0.7 allows remote attackers to change the administrator password without authentication via an HTTP request for admin.php3 that sets step, option, confirm and newPssword variables.  Assigned (20050714)  None (candidate not yet proposed)    View

Page 19264 of 20943, showing 5 records out of 104715 total, starting on record 96316, ending on 96320

Actions