CVE List

Id CVE No. Status Description Phase Votes Comments Actions
71173  CVE-2014-3877  Candidate  Incomplete blacklist vulnerability in Frams" Fast File EXchange (F*EX, aka fex) before fex-20140530 allows remote attackers to conduct cross-site scripting (XSS) attacks via the addto parameter to fup.  Assigned (20140527)  None (candidate not yet proposed)    View
5893  CVE-2002-1509  Entry  A patch for shadow-utils 20000902 causes the useradd command to create a mail spool files with read/write privileges of the new user"s group (mode 660), which allows other users in the same group to read or modify the new user"s incoming email.        View
71429  CVE-2014-4133  Candidate  Microsoft Internet Explorer 6 and 7 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-4137.  Assigned (20140612)  None (candidate not yet proposed)    View
6149  CVE-2002-1767  Candidate  Buffer overflow in tnslsnr of Oracle 8i Database Server 8.1.5 for Linux allows local users to execute arbitrary code as the oracle user via a long command line argument.  Assigned (20050621)  None (candidate not yet proposed)    View
71685  CVE-2014-4389  Candidate  Integer overflow in IOKit in Apple iOS before 8 and Apple TV before 7 allows attackers to execute arbitrary code in a privileged context via an application that provides crafted API arguments.  Assigned (20140620)  None (candidate not yet proposed)    View

Page 412 of 20943, showing 5 records out of 104715 total, starting on record 2056, ending on 2060

Actions