CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4089  CVE-2001-1285  Candidate  Directory traversal vulnerability in readmail.cgi for Ipswitch IMail 7.04 and earlier allows remote attackers to access the mailboxes of other users via a .. (dot dot) in the mbx parameter.  Proposed (20020502)  ACCEPT(1) Green | MODIFY(1) Frech | NOOP(4) Cole, Cox, Foat, Wall  Frech> XF:imail-mailbox-directory-traversal(7275)  View
69625  CVE-2014-2330  Candidate  Multiple cross-site request forgery (CSRF) vulnerabilities in the Multisite GUI in Check_MK before 1.2.5i2 allow remote attackers to hijack the authentication of users for requests that (1) upload arbitrary snapshots, (2) delete arbitrary files, or possibly have other unspecified impact via unknown vectors.  Assigned (20140312)  None (candidate not yet proposed)    View
4345  CVE-2001-1545  Candidate  Macromedia JRun 3.0 and 3.1 appends the jsessionid to URL requests (a.k.a. rewriting) when client browsers have cookies enabled, which allows remote attackers to obtain session IDs and hijack sessions via HTTP referrer fields or sniffing.  Assigned (20050714)  None (candidate not yet proposed)    View
69881  CVE-2014-2586  Candidate  Cross-site scripting (XSS) vulnerability in the login audit form in McAfee Cloud Single Sign On (SSO) allows remote attackers to inject arbitrary web script or HTML via a crafted password.  Assigned (20140323)  None (candidate not yet proposed)    View
70137  CVE-2014-2842  Candidate  Juniper ScreenOS 6.3 and earlier allows remote attackers to cause a denial of service (crash and restart or failover) via a malformed SSL/TLS packet.  Assigned (20140410)  None (candidate not yet proposed)    View

Page 20391 of 20943, showing 5 records out of 104715 total, starting on record 101951, ending on 101955

Actions