CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10757 | CVE-2004-2331 | Candidate | ColdFusion MX 6.1 and 6.1 J2EE allows local users to bypass sandbox security restrictions and obtain sensitive information by using Java reflection methods to access trusted Java objects without using the CreateObject function or cfobject tag. | Assigned (20050816) | None (candidate not yet proposed) | View | |
76293 | CVE-2014-8992 | Candidate | Cross-site scripting (XSS) vulnerability in manager/assets/fileapi/FileAPI.flash.image.swf in MODX Revolution 2.3.2-pl allows remote attackers to inject arbitrary web script or HTML via the callback parameter. | Assigned (20141119) | None (candidate not yet proposed) | View | |
11013 | CVE-2004-2587 | Candidate | login.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote attackers to cause a denial of service via a long txtusername parameter, possibly due to a buffer overflow. | Assigned (20051128) | None (candidate not yet proposed) | View | |
76549 | CVE-2014-9248 | Candidate | Zenoss Core through 5 Beta 3 does not require complex passwords, which makes it easier for remote attackers to obtain access via a brute-force attack, aka ZEN-15406. | Assigned (20141203) | None (candidate not yet proposed) | View | |
11269 | CVE-2005-0063 | Candidate | The document processing application used by the Windows Shell in Microsoft Windows 2000, Windows XP, and Windows Server 2003 allows remote attackers to execute arbitrary code by modifying the CLSID stored in a file so that it is processed by HTML Application Host (MSHTA), as demonstrated using a Microsoft Word document. | Assigned (20050111) | None (candidate not yet proposed) | View |
Page 436 of 20943, showing 5 records out of 104715 total, starting on record 2176, ending on 2180