CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4347  CVE-2001-1547  Candidate  Outlook Express 6.0, with "Do not allow attachments to be saved or opened that could potentially be a virus" enabled, does not block email attachments from forwarded messages, which could allow remote attackers to execute arbitrary code.  Assigned (20050714)  None (candidate not yet proposed)    View
69883  CVE-2014-2588  Candidate  Directory traversal vulnerability in servlet/downloadReport in McAfee Asset Manager 6.6 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the reportFileName parameter.  Assigned (20140323)  None (candidate not yet proposed)    View
70139  CVE-2014-2844  Candidate  Cross-site scripting (XSS) vulnerability in F-Secure Messaging Secure Gateway 7.5.0 before Patch 1862 allows remote authenticated administrators to inject arbitrary web script or HTML via the new parameter in the SysUser module to admin.  Assigned (20140410)  None (candidate not yet proposed)    View
4859  CVE-2002-0467  Candidate  Buffer overflows in Ecartis (formerly Listar) 1.0.0 before snapshot 20020125 allows remote attackers to execute arbitrary code via (1) address_match() of mystring.c or (2) other functions in tolist.c.  Proposed (20020611)  ACCEPT(4) Baker, Cole, Frech, Green | NOOP(3) Cox, Foat, Wall    View
70395  CVE-2014-3100  Candidate  Stack-based buffer overflow in the encode_key function in /system/bin/keystore in the KeyStore service in Android 4.3 allows attackers to execute arbitrary code, and consequently obtain sensitive key information or bypass intended restrictions on cryptographic operations, via a long key name.  Assigned (20140429)  None (candidate not yet proposed)    View

Page 20551 of 20943, showing 5 records out of 104715 total, starting on record 102751, ending on 102755

Actions