CVE List

Id CVE No. Status Description Phase Votes Comments Actions
68612  CVE-2014-1317  Candidate  iBooks Commerce in Apple OS X before 10.9.4 places Apple ID credentials in the iBooks log, which allows local users to obtain sensitive information by reading this file.  Assigned (20140108)  None (candidate not yet proposed)    View
68868  CVE-2014-1573  Candidate  Bugzilla 2.x through 4.0.x before 4.0.15, 4.1.x and 4.2.x before 4.2.11, 4.3.x and 4.4.x before 4.4.6, and 4.5.x before 4.5.6 does not ensure that a scalar context is used for certain CGI parameters, which allows remote attackers to conduct cross-site scripting (XSS) attacks by sending three values for a single parameter name.  Assigned (20140116)  None (candidate not yet proposed)    View
3588  CVE-2001-0781  Candidate  Buffer overflow in SpoonFTP 1.0.0.12 allows remote attackers to execute arbitrary code via a long argument to the commands (1) CWD or (2) LIST.  Proposed (20011012)  ACCEPT(3) Armstrong, Foat, Frech | NOOP(2) Cole, Wall    View
69124  CVE-2014-1829  Candidate  Requests (aka python-requests) before 2.3.0 allows remote servers to obtain a netrc password by reading the Authorization header in a redirected request.  Assigned (20140130)  None (candidate not yet proposed)    View
3844  CVE-2001-1040  Candidate  HP LaserJet, and possibly other JetDirect devices, resets the admin password when the device is turned off, which could allow remote attackers to access the device without the password.  Proposed (20020131)  ACCEPT(1) Green | MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Foat, Wall  Frech> Not jetdirect-jetadmin-telnet-access(6950). | CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:jetdirect-admin-password-reset(8713)  View

Page 324 of 20943, showing 5 records out of 104715 total, starting on record 1616, ending on 1620

Actions