CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3827 | CVE-2001-1023 | Candidate | Xcache 2.1 allows remote attackers to determine the absolute path of web server documents by requesting a URL that is not cached by Xcache, which returns the full pathname in the Content-PageName header. | Proposed (20020131) | ACCEPT(2) Frech, Green | NOOP(3) Cole, Foat, Wall | View | |
69363 | CVE-2014-2068 | Candidate | The doIndex function in hudson/util/RemotingDiagnostics.java in CloudBees Jenkins before 1.551 and LTS before 1.532.2 allows remote authenticated users with the ADMINISTER permission to obtain sensitive information via vectors related to heapDump. | Assigned (20140219) | None (candidate not yet proposed) | View | |
69619 | CVE-2014-2324 | Candidate | Multiple directory traversal vulnerabilities in (1) mod_evhost and (2) mod_simple_vhost in lighttpd before 1.4.35 allow remote attackers to read arbitrary files via a .. (dot dot) in the host name, related to request_check_hostname. | Assigned (20140312) | None (candidate not yet proposed) | View | |
4339 | CVE-2001-1539 | Candidate | Stack consumption vulnerability in Internet Explorer The JavaScript settimeout function in Internet Explorer allows remote attackers to cause a denial of service (crash) via the JavaScript settimeout function. NOTE: the vendor could not reproduce the problem. | Assigned (20050714) | None (candidate not yet proposed) | View | |
69875 | CVE-2014-2580 | Candidate | The netback driver in Xen, when using certain Linux versions that do not allow sleeping in softirq context, allows local guest administrators to cause a denial of service ("scheduling while atomic" error and host crash) via a malformed packet, which causes a mutex to be taken when trying to disable the interface. | Assigned (20140321) | None (candidate not yet proposed) | View |
Page 19914 of 20943, showing 5 records out of 104715 total, starting on record 99566, ending on 99570