CVE List

Id CVE No. Status Description Phase Votes Comments Actions
67096  CVE-2013-7149  Candidate  SQL injection vulnerability in www/delivery/axmlrpc.php (aka the XML-RPC delivery invocation script) in Revive Adserver before 3.0.2, and OpenX Source 2.8.11 and earlier, allows remote attackers to execute arbitrary SQL commands via the what parameter to an XML-RPC method.  Assigned (20131219)  None (candidate not yet proposed)    View
1816  CVE-2000-0238  Entry  Buffer overflow in the web server for Norton AntiVirus for Internet Email Gateways allows remote attackers to cause a denial of service via a long URL.        View
67352  CVE-2013-7405  Candidate  The Ad Hoc Reporting feature in GE Healthcare Centricity DMS 4.2 has a password of Never!Mind for the Administrator user, which has unspecified impact and attack vectors. NOTE: it is not clear whether this password is default, hardcoded, or dependent on another system or product that requires a fixed value.  Assigned (20140929)  None (candidate not yet proposed)    View
2072  CVE-2000-0494  Entry  Veritas Volume Manager creates a world writable .server_pids file, which allows local users to add arbitrary commands into the file, which is then executed by the vmsa_server script.        View
67608  CVE-2014-0199  Candidate  The setup script in ovirt-engine-reports, as used in the Red Hat Enterprise Virtualization reports (rhevm-reports) package before 3.3.3, stores the reports database password in cleartext, which allows local users to obtain sensitive information by reading an unspecified file.  Assigned (20131203)  None (candidate not yet proposed)    View

Page 1935 of 20943, showing 5 records out of 104715 total, starting on record 9671, ending on 9675

Actions