CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6391  CVE-2002-2009  Candidate  Apache Tomcat 4.0.1 allows remote attackers to obtain the web root path via HTTP requests for JSP files preceded by (1) +/, (2) >/, (3) </, and (4) %20/, which leaks the pathname in an error message.  Assigned (20050714)  None (candidate not yet proposed)    View
71927  CVE-2014-4630  Candidate  EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x before 4.0.6 and RSA BSAFE SSL-J before 6.1.4 do not ensure that a server"s X.509 certificate is the same during renegotiation as it was before renegotiation, which allows man-in-the-middle attackers to obtain sensitive information or modify TLS session data via a "triple handshake attack."  Assigned (20140624)  None (candidate not yet proposed)    View
6647  CVE-2002-2265  Candidate  Unspecified vulnerability in LDAP Module in System Authentication of Open Source Internet Solutions (OSIS) 5.4 running on Tru64 UNIX 4.0G and 4.0F allows remote attackers to gain access to arbitrary files or gain privileges via unknown attack vectors.  Assigned (20071017)  None (candidate not yet proposed)    View
72183  CVE-2014-4886  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140710)  None (candidate not yet proposed)    View
6903  CVE-2003-0074  Candidate  Format string vulnerability in mpmain.c for plpnfsd of the plptools package allows remote attackers to execute arbitrary code via the functions (1) debuglog, (2) errorlog, and (3) infolog.  Modified (20080326)  ACCEPT(3) Baker, Cole, Green | NOOP(2) Cox, Wall    View

Page 20230 of 20943, showing 5 records out of 104715 total, starting on record 101146, ending on 101150

Actions