CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10486  CVE-2004-2060  Candidate  ASPRunner 2.4 stores the database under the web root in the db directory, which may allow remote attackers to obtain the database via a direct request to the database filename, which is predictable based on table and field names.  Assigned (20050504)  None (candidate not yet proposed)    View
76022  CVE-2014-8721  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141109)  None (candidate not yet proposed)    View
10742  CVE-2004-2316  Candidate  Mbedthis AppWeb HTTP server before 1.0.2 allows remote attackers to cause a denial of service (crash) via a GET request containing an MS-DOS device name such as COM1.  Assigned (20050816)  None (candidate not yet proposed)    View
76278  CVE-2014-8977  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141118)  None (candidate not yet proposed)    View
10998  CVE-2004-2572  Candidate  AMAX Magic Winmail Server 3.6 allows remote attackers to obtain sensitive information by entering (1) invalid characters such as "()" or (2) a large number of characters in the Lookup field on the netaddressbook.php web form, which reveals the path in an ldaplib.php error message when the ldap_search function fails, due to improper processing of the $keyword variable.  Assigned (20051122)  None (candidate not yet proposed)    View

Page 20148 of 20943, showing 5 records out of 104715 total, starting on record 100736, ending on 100740

Actions