CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4089 | CVE-2001-1285 | Candidate | Directory traversal vulnerability in readmail.cgi for Ipswitch IMail 7.04 and earlier allows remote attackers to access the mailboxes of other users via a .. (dot dot) in the mbx parameter. | Proposed (20020502) | ACCEPT(1) Green | MODIFY(1) Frech | NOOP(4) Cole, Cox, Foat, Wall | Frech> XF:imail-mailbox-directory-traversal(7275) | View |
69625 | CVE-2014-2330 | Candidate | Multiple cross-site request forgery (CSRF) vulnerabilities in the Multisite GUI in Check_MK before 1.2.5i2 allow remote attackers to hijack the authentication of users for requests that (1) upload arbitrary snapshots, (2) delete arbitrary files, or possibly have other unspecified impact via unknown vectors. | Assigned (20140312) | None (candidate not yet proposed) | View | |
4345 | CVE-2001-1545 | Candidate | Macromedia JRun 3.0 and 3.1 appends the jsessionid to URL requests (a.k.a. rewriting) when client browsers have cookies enabled, which allows remote attackers to obtain session IDs and hijack sessions via HTTP referrer fields or sniffing. | Assigned (20050714) | None (candidate not yet proposed) | View | |
69881 | CVE-2014-2586 | Candidate | Cross-site scripting (XSS) vulnerability in the login audit form in McAfee Cloud Single Sign On (SSO) allows remote attackers to inject arbitrary web script or HTML via a crafted password. | Assigned (20140323) | None (candidate not yet proposed) | View | |
70137 | CVE-2014-2842 | Candidate | Juniper ScreenOS 6.3 and earlier allows remote attackers to cause a denial of service (crash and restart or failover) via a malformed SSL/TLS packet. | Assigned (20140410) | None (candidate not yet proposed) | View |
Page 20391 of 20943, showing 5 records out of 104715 total, starting on record 101951, ending on 101955