CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
71668 | CVE-2014-4372 | Candidate | syslogd in the syslog subsystem in Apple iOS before 8 and Apple TV before 7 allows local users to change the permissions of arbitrary files via a symlink attack on an unspecified file. | Assigned (20140620) | None (candidate not yet proposed) | View | |
6388 | CVE-2002-2006 | Candidate | The default installation of Apache Tomcat 4.0 through 4.1 and 3.0 through 3.3.1 allows remote attackers to obtain the installation path and other sensitive system information via the (1) SnoopServlet or (2) TroubleShooter example servlets. | Assigned (20050714) | None (candidate not yet proposed) | View | |
71924 | CVE-2014-4627 | Candidate | SQL injection vulnerability in EMC RSA Web Threat Detection 4.x before 4.6.1.1 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors. | Assigned (20140624) | None (candidate not yet proposed) | View | |
6644 | CVE-2002-2262 | Candidate | Unspecified vulnerability in xntpd of HP-UX 10.20 through 11.11 allows remote attackers to cause a denial of service (hang) via unknown attack vectors. | Assigned (20071017) | None (candidate not yet proposed) | View | |
72180 | CVE-2014-4883 | Candidate | resolv.c in the DNS resolver in uIP, and dns.c in the DNS resolver in lwIP 1.4.1 and earlier, does not use random values for ID fields and source ports of DNS query packets, which makes it easier for man-in-the-middle attackers to conduct cache-poisoning attacks via spoofed reply packets. | Assigned (20140710) | None (candidate not yet proposed) | View |
Page 19386 of 20943, showing 5 records out of 104715 total, starting on record 96926, ending on 96930