CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3582 | CVE-2001-0775 | Candidate | Buffer overflow in xloadimage 4.1 (aka xli 1.16 and 1.17) in Linux allows remote attackers to execute arbitrary code via a FACES format image containing a long (1) Firstname or (2) Lastname field. | Modified (20050329) | ACCEPT(3) Armstrong, Baker, Foat | MODIFY(1) Frech | NOOP(3) Christey, Cole, Wall | Frech> XF:xloadimage-faces-bo(6821) | Christey> ADDREF RHSA-2001:088 (per Mark Cox of Red Hat) | View |
69118 | CVE-2014-1823 | Candidate | Cross-site scripting (XSS) vulnerability in the Web Components Server in Microsoft Lync Server 2010 and 2013 allows remote attackers to inject arbitrary web script or HTML via a crafted URL containing a valid meeting ID, aka "Lync Server Content Sanitization Vulnerability." | Assigned (20140129) | None (candidate not yet proposed) | View | |
3838 | CVE-2001-1034 | Candidate | Format string vulnerability in Hylafax on FreeBSD allows local users to execute arbitrary code via format specifiers in the -h hostname argument for (1) faxrm or (2) faxalter. | Proposed (20020131) | ACCEPT(2) Frech, Green | NOOP(4) Christey, Cole, Foat, Wall | Christey> Acknowledged in: | BUGTRAQ:20020729 HylaFAX - Various Vulnerabilities Fixed | URL:http://archives.neohapsis.com/archives/bugtraq/2002-07/0358.html | Vendor says problem affects all versions "prior to 4.1.3" | Christey> Confirmed by vendor: | BUGTRAQ:20020729 HylaFAX - Various Vulnerabilities Fixed | URL:http://archives.neohapsis.com/archives/bugtraq/2002-07/0358.html | | Also affects OSes other than FreeBSD. | DEBIAN:DSA-148 | URL:http://www.debian.org/security/2002/dsa-148 | Christey> MANDRAKE:MDKSA-2002:055 | View |
69374 | CVE-2014-2079 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20140219) | None (candidate not yet proposed) | View | |
4094 | CVE-2001-1290 | Candidate | admin.cgi in Active Classifieds Free Edition 1.0, and possibly commercial versions, allows remote attackers to modify the configuration, gain privileges, and execute arbitrary Perl code via the table_width parameter. | Modified (20061107) | ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall | View |
Page 20178 of 20943, showing 5 records out of 104715 total, starting on record 100886, ending on 100890