CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3582  CVE-2001-0775  Candidate  Buffer overflow in xloadimage 4.1 (aka xli 1.16 and 1.17) in Linux allows remote attackers to execute arbitrary code via a FACES format image containing a long (1) Firstname or (2) Lastname field.  Modified (20050329)  ACCEPT(3) Armstrong, Baker, Foat | MODIFY(1) Frech | NOOP(3) Christey, Cole, Wall  Frech> XF:xloadimage-faces-bo(6821) | Christey> ADDREF RHSA-2001:088 (per Mark Cox of Red Hat)  View
69118  CVE-2014-1823  Candidate  Cross-site scripting (XSS) vulnerability in the Web Components Server in Microsoft Lync Server 2010 and 2013 allows remote attackers to inject arbitrary web script or HTML via a crafted URL containing a valid meeting ID, aka "Lync Server Content Sanitization Vulnerability."  Assigned (20140129)  None (candidate not yet proposed)    View
3838  CVE-2001-1034  Candidate  Format string vulnerability in Hylafax on FreeBSD allows local users to execute arbitrary code via format specifiers in the -h hostname argument for (1) faxrm or (2) faxalter.  Proposed (20020131)  ACCEPT(2) Frech, Green | NOOP(4) Christey, Cole, Foat, Wall  Christey> Acknowledged in: | BUGTRAQ:20020729 HylaFAX - Various Vulnerabilities Fixed | URL:http://archives.neohapsis.com/archives/bugtraq/2002-07/0358.html | Vendor says problem affects all versions "prior to 4.1.3" | Christey> Confirmed by vendor: | BUGTRAQ:20020729 HylaFAX - Various Vulnerabilities Fixed | URL:http://archives.neohapsis.com/archives/bugtraq/2002-07/0358.html | | Also affects OSes other than FreeBSD. | DEBIAN:DSA-148 | URL:http://www.debian.org/security/2002/dsa-148 | Christey> MANDRAKE:MDKSA-2002:055  View
69374  CVE-2014-2079  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140219)  None (candidate not yet proposed)    View
4094  CVE-2001-1290  Candidate  admin.cgi in Active Classifieds Free Edition 1.0, and possibly commercial versions, allows remote attackers to modify the configuration, gain privileges, and execute arbitrary Perl code via the table_width parameter.  Modified (20061107)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall    View

Page 20178 of 20943, showing 5 records out of 104715 total, starting on record 100886, ending on 100890

Actions