CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10222 | CVE-2004-1794 | Candidate | Cross-site scripting (XSS) vulnerability in the VCard4J Toolkit allows remote attackers to inject arbitrary web script or HTML via the NICKNAME tag in a vCard. | Assigned (20050504) | None (candidate not yet proposed) | View | |
75758 | CVE-2014-8457 | Candidate | Heap-based buffer overflow in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows and OS X allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-8460 and CVE-2014-9159. | Assigned (20141022) | None (candidate not yet proposed) | View | |
10478 | CVE-2004-2052 | Candidate | eSeSIX Thintune thin clients running firmware 2.4.38 and earlier accept any password that begins with the actual password, which makes it easier for users to conduct brute force password guessing. | Assigned (20050504) | None (candidate not yet proposed) | View | |
76014 | CVE-2014-8713 | Candidate | Stack-based buffer overflow in the build_expert_data function in epan/dissectors/packet-ncp2222.inc in the NCP dissector in Wireshark 1.10.x before 1.10.11 and 1.12.x before 1.12.2 allows remote attackers to cause a denial of service (application crash) via a crafted packet. | Assigned (20141109) | None (candidate not yet proposed) | View | |
10734 | CVE-2004-2308 | Candidate | Cross-site scripting (XSS) vulnerability in cPanel 9.1.0 and possibly earlier allows remote attackers to inject arbitrary web script or HTML via the dir parameter in dohtaccess.html. | Assigned (20050816) | None (candidate not yet proposed) | View |
Page 19531 of 20943, showing 5 records out of 104715 total, starting on record 97651, ending on 97655