CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6126 | CVE-2002-1744 | Candidate | Directory traversal vulnerability in CodeBrws.asp in Microsoft IIS 5.0 allows remote attackers to view source code and determine the existence of arbitrary files via a hex-encoded "%c0%ae%c0%ae" string, which is the Unicode representation for ".." (dot dot). | Assigned (20050621) | None (candidate not yet proposed) | View | |
71662 | CVE-2014-4366 | Candidate | Mail in Apple iOS before 8 does not prevent sending a LOGIN command to a LOGINDISABLED IMAP server, which allows remote attackers to obtain sensitive cleartext information by sniffing the network. | Assigned (20140620) | None (candidate not yet proposed) | View | |
6382 | CVE-2002-2000 | Candidate | ACMS 4.3 and 4.4 in OpenVMS Alpha 7.2 and 7.3 does not properly use process privileges, which allows attackers to access data. | Assigned (20050714) | None (candidate not yet proposed) | View | |
71918 | CVE-2014-4621 | Candidate | EMC Documentum Content Server before 6.7 SP2 P17, 7.0 through P15, and 7.1 before P08 does not properly check authorization for subtypes of protected system types, which allows remote authenticated users to obtain super-user privileges for system-object creation, and bypass intended restrictions on data access and server actions, via unspecified vectors. | Assigned (20140624) | None (candidate not yet proposed) | View | |
6638 | CVE-2002-2256 | Candidate | Directory traversal vulnerability in pWins Webserver 0.2.5 and earlier allows remote attackers to read arbitrary files via Unicode characters. | Assigned (20071014) | None (candidate not yet proposed) | View |
Page 19519 of 20943, showing 5 records out of 104715 total, starting on record 97591, ending on 97595