CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69629  CVE-2014-2334  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the Web User Interface in Fortinet FortiAnalyzer before 5.0.7 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2014-2336.  Assigned (20140312)  None (candidate not yet proposed)    View
4349  CVE-2001-1549  Candidate  Tiny Personal Firewall 1.0 and 2.0 allows local users to bypass filtering via non-standard TCP packets created with non-Windows protocol adapters.  Assigned (20050714)  None (candidate not yet proposed)    View
69885  CVE-2014-2590  Candidate  The web management interface in Siemens RuggedCom ROS before 3.11, ROS 3.11 before 3.11.5 for RS950G, ROS 3.12, and ROS 4.0 for RSG2488 allows remote attackers to cause a denial of service (interface outage) via crafted HTTP packets.  Assigned (20140324)  None (candidate not yet proposed)    View
4605  CVE-2002-0213  Entry  xkas in Xinet K-AShare 0.011.01 for IRIX allows local users to read arbitrary files via a symlink attack on the VOLICON file, which is copied to the .HSicon file in a shared directory.        View
70141  CVE-2014-2846  Candidate  Directory traversal vulnerability in opt/arkeia/wui/htdocs/index.php in the WD Arkeia virtual appliance (AVA) with firmware before 10.2.9 allows remote attackers to read arbitrary files and execute arbitrary PHP code via a ..././ (dot dot dot slash dot slash) in the lang Cookie parameter, as demonstrated by a request to login/doLogin.  Assigned (20140410)  None (candidate not yet proposed)    View

Page 20708 of 20943, showing 5 records out of 104715 total, starting on record 103536, ending on 103540

Actions