CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8952 | CVE-2004-0524 | Candidate | Buffer overflow in the chpasswd command in the Change_passwd plugin before 4.0, as used in SquirrelMail, allows local users to gain root privileges via a long user name. | Assigned (20040603) | None (candidate not yet proposed) | View | |
74488 | CVE-2014-7188 | Candidate | The hvm_msr_read_intercept function in arch/x86/hvm/hvm.c in Xen 4.1 through 4.4.x uses an improper MSR range for x2APIC emulation, which allows local HVM guests to cause a denial of service (host crash) or read data from the hypervisor or other guests via unspecified vectors. | Assigned (20140926) | None (candidate not yet proposed) | View | |
9208 | CVE-2004-0780 | Candidate | Buffer overflow in uustat in Sun Solaris 8 and 9 allows local users to execute arbitrary code via a long -S command line argument. | Assigned (20040817) | None (candidate not yet proposed) | View | |
74744 | CVE-2014-7443 | Candidate | The Face Fun Photo Collage Maker 2 (aka com.kauf.facefunphotocollagemaker2) application 1.3.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | Assigned (20141003) | None (candidate not yet proposed) | View | |
9464 | CVE-2004-1036 | Candidate | Cross-site scripting (XSS) vulnerability in the decoding of encoded text in certain headers in mime.php for SquirrelMail 1.4.3a and earlier, and 1.5.1-cvs before 23rd October 2004, allows remote attackers to execute arbitrary web script or HTML. | Assigned (20041115) | None (candidate not yet proposed) | View |
Page 20300 of 20943, showing 5 records out of 104715 total, starting on record 101496, ending on 101500