CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10745 | CVE-2004-2319 | Candidate | IBM Informix Dynamic Server (IDS) before 9.40.xC3 allows local users to (1) create or overwrite files via the /001 log file to onedcu or (2) read arbitrary files via a symlink attack on a file in /tmp to onshowaudit. | Assigned (20050816) | None (candidate not yet proposed) | View | |
76281 | CVE-2014-8980 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20141118) | None (candidate not yet proposed) | View | |
11001 | CVE-2004-2575 | Candidate | phpGroupWare 0.9.14.005 and earlier allow remote attackers to obtain sensitive information via a direct request to (1) hook_admin.inc.php, (2) hook_home.inc.php, (3) class.holidaycalc.inc.php, and (4) setup.inc.php.sample, which reveals the path in an error message. | Assigned (20051128) | None (candidate not yet proposed) | View | |
76537 | CVE-2014-9236 | Candidate | Cross-site scripting (XSS) vulnerability in php/edit_photos.php in Zoph (aka Zoph Organizes Photos) 0.9.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) photographer_id or (2) _crumb parameter. | Assigned (20141203) | None (candidate not yet proposed) | View | |
11257 | CVE-2005-0051 | Candidate | The Server service (srvsvc.dll) in Windows XP SP1 and SP2 allows remote attackers to obtain sensitive information (users who are accessing resources) via an anonymous logon using a named pipe, which is not properly authenticated, aka the "Named Pipe Vulnerability." | Assigned (20050111) | None (candidate not yet proposed) | View |
Page 20380 of 20943, showing 5 records out of 104715 total, starting on record 101896, ending on 101900