CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4347 | CVE-2001-1547 | Candidate | Outlook Express 6.0, with "Do not allow attachments to be saved or opened that could potentially be a virus" enabled, does not block email attachments from forwarded messages, which could allow remote attackers to execute arbitrary code. | Assigned (20050714) | None (candidate not yet proposed) | View | |
69883 | CVE-2014-2588 | Candidate | Directory traversal vulnerability in servlet/downloadReport in McAfee Asset Manager 6.6 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the reportFileName parameter. | Assigned (20140323) | None (candidate not yet proposed) | View | |
70139 | CVE-2014-2844 | Candidate | Cross-site scripting (XSS) vulnerability in F-Secure Messaging Secure Gateway 7.5.0 before Patch 1862 allows remote authenticated administrators to inject arbitrary web script or HTML via the new parameter in the SysUser module to admin. | Assigned (20140410) | None (candidate not yet proposed) | View | |
4859 | CVE-2002-0467 | Candidate | Buffer overflows in Ecartis (formerly Listar) 1.0.0 before snapshot 20020125 allows remote attackers to execute arbitrary code via (1) address_match() of mystring.c or (2) other functions in tolist.c. | Proposed (20020611) | ACCEPT(4) Baker, Cole, Frech, Green | NOOP(3) Cox, Foat, Wall | View | |
70395 | CVE-2014-3100 | Candidate | Stack-based buffer overflow in the encode_key function in /system/bin/keystore in the KeyStore service in Android 4.3 allows attackers to execute arbitrary code, and consequently obtain sensitive key information or bypass intended restrictions on cryptographic operations, via a long key name. | Assigned (20140429) | None (candidate not yet proposed) | View |
Page 20551 of 20943, showing 5 records out of 104715 total, starting on record 102751, ending on 102755