CVE List

Id CVE No. Status Description Phase Votes Comments Actions
71668  CVE-2014-4372  Candidate  syslogd in the syslog subsystem in Apple iOS before 8 and Apple TV before 7 allows local users to change the permissions of arbitrary files via a symlink attack on an unspecified file.  Assigned (20140620)  None (candidate not yet proposed)    View
6388  CVE-2002-2006  Candidate  The default installation of Apache Tomcat 4.0 through 4.1 and 3.0 through 3.3.1 allows remote attackers to obtain the installation path and other sensitive system information via the (1) SnoopServlet or (2) TroubleShooter example servlets.  Assigned (20050714)  None (candidate not yet proposed)    View
71924  CVE-2014-4627  Candidate  SQL injection vulnerability in EMC RSA Web Threat Detection 4.x before 4.6.1.1 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.  Assigned (20140624)  None (candidate not yet proposed)    View
6644  CVE-2002-2262  Candidate  Unspecified vulnerability in xntpd of HP-UX 10.20 through 11.11 allows remote attackers to cause a denial of service (hang) via unknown attack vectors.  Assigned (20071017)  None (candidate not yet proposed)    View
72180  CVE-2014-4883  Candidate  resolv.c in the DNS resolver in uIP, and dns.c in the DNS resolver in lwIP 1.4.1 and earlier, does not use random values for ID fields and source ports of DNS query packets, which makes it easier for man-in-the-middle attackers to conduct cache-poisoning attacks via spoofed reply packets.  Assigned (20140710)  None (candidate not yet proposed)    View

Page 19386 of 20943, showing 5 records out of 104715 total, starting on record 96926, ending on 96930

Actions