CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69115  CVE-2014-1820  Candidate  Cross-site scripting (XSS) vulnerability in Master Data Services (MDS) in Microsoft SQL Server 2012 SP1 and 2014 on 64-bit platforms allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka "SQL Master Data Services XSS Vulnerability."  Assigned (20140129)  None (candidate not yet proposed)    View
3835  CVE-2001-1031  Candidate  Directory traversal vulnerability in Meteor FTP 1.0 allows remote attackers to read arbitrary files via (1) a .. (dot dot) in the ls/LIST command, or (2) a ... in the cd/CWD command.  Modified (20020228-01)  ACCEPT(4) Baker, Cole, Frech, Green | NOOP(2) Foat, Wall    View
69371  CVE-2014-2076  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140219)  None (candidate not yet proposed)    View
4091  CVE-2001-1287  Candidate  Buffer overflow in Web Calendar in Ipswitch IMail 7.04 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request.  Proposed (20020502)  ACCEPT(1) Green | MODIFY(1) Frech | NOOP(4) Cole, Cox, Foat, Wall  Frech> XF:imail-web-calendaring-bo(7279)  View
69627  CVE-2014-2332  Candidate  Check_MK before 1.2.2p3 and 1.2.3x before 1.2.3i5 allows remote authenticated users to delete arbitrary files via a request to an unspecified link, related to "Insecure Direct Object References." NOTE: this can be exploited by remote attackers by leveraging CVE-2014-2330.  Assigned (20140312)  None (candidate not yet proposed)    View

Page 20550 of 20943, showing 5 records out of 104715 total, starting on record 102746, ending on 102750

Actions