CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69870  CVE-2014-2575  Candidate  Directory traversal vulnerability in the File Manager component in DevExpress ASPxFileManager Control for ASP.NET WebForms and MVC before 13.1.10 and 13.2.x before 13.2.9 allows remote authenticated users to read or write arbitrary files via a .. (dot dot) in the __EVENTARGUMENT parameter.  Assigned (20140321)  None (candidate not yet proposed)    View
4590  CVE-2002-0198  Candidate  Buffer overflow in plDaniels ripMime 1.2.6 and earlier, as used in other programs such as xamime and inflex, allows remote attackers to execute arbitrary code via an attachment in a long filename.  Proposed (20020502)  ACCEPT(2) Cole, Green | NOOP(2) Foat, Wall    View
70126  CVE-2014-2831  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140410)  None (candidate not yet proposed)    View
70382  CVE-2014-3087  Candidate  callService.do in IBM Business Process Manager (BPM) 7.5 through 8.5.5 and WebSphere Lombardi Edition 7.2 through 7.2.0.5 allows remote authenticated users to read arbitrary files via an XML external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.  Assigned (20140429)  None (candidate not yet proposed)    View
5102  CVE-2002-0712  Candidate  Entrust Authority Security Manager (EASM) 6.0 does not properly require multiple master users to change the password of a master user, which could allow a master user to perform operations that require multiple authorizations.  Assigned (20020719)  None (candidate not yet proposed)    View

Page 19517 of 20943, showing 5 records out of 104715 total, starting on record 97581, ending on 97585

Actions