CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6126  CVE-2002-1744  Candidate  Directory traversal vulnerability in CodeBrws.asp in Microsoft IIS 5.0 allows remote attackers to view source code and determine the existence of arbitrary files via a hex-encoded "%c0%ae%c0%ae" string, which is the Unicode representation for ".." (dot dot).  Assigned (20050621)  None (candidate not yet proposed)    View
71662  CVE-2014-4366  Candidate  Mail in Apple iOS before 8 does not prevent sending a LOGIN command to a LOGINDISABLED IMAP server, which allows remote attackers to obtain sensitive cleartext information by sniffing the network.  Assigned (20140620)  None (candidate not yet proposed)    View
6382  CVE-2002-2000  Candidate  ACMS 4.3 and 4.4 in OpenVMS Alpha 7.2 and 7.3 does not properly use process privileges, which allows attackers to access data.  Assigned (20050714)  None (candidate not yet proposed)    View
71918  CVE-2014-4621  Candidate  EMC Documentum Content Server before 6.7 SP2 P17, 7.0 through P15, and 7.1 before P08 does not properly check authorization for subtypes of protected system types, which allows remote authenticated users to obtain super-user privileges for system-object creation, and bypass intended restrictions on data access and server actions, via unspecified vectors.  Assigned (20140624)  None (candidate not yet proposed)    View
6638  CVE-2002-2256  Candidate  Directory traversal vulnerability in pWins Webserver 0.2.5 and earlier allows remote attackers to read arbitrary files via Unicode characters.  Assigned (20071014)  None (candidate not yet proposed)    View

Page 19519 of 20943, showing 5 records out of 104715 total, starting on record 97591, ending on 97595

Actions