CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69126  CVE-2014-1831  Candidate  Phusion Passenger before 4.0.37 allows local users to write to certain files and directories via a symlink attack on (1) control_process.pid or a (2) generation-* file.  Assigned (20140130)  None (candidate not yet proposed)    View
3846  CVE-2001-1042  Candidate  Transsoft Broker 5.9.5.0 allows remote attackers to read arbitrary files and directories by uploading a .lnk (link) file that points to the target file.  Proposed (20020131)  ACCEPT(2) Cole, Frech | NOOP(3) Armstrong, Foat, Wall | REVIEWING(1) Green    View
69382  CVE-2014-2087  Candidate  Stack-based buffer overflow in the CDownloads_Deleted::UpdateDownload function in Downloads_Deleted.cpp in Free Download Manager 3.9.3 build 1360, 3.8 build 1173, 3.0 build 852, and earlier allows user-assisted remote attackers to execute arbitrary code via a long file name, which is then deleted from the download queue by the user.  Assigned (20140224)  None (candidate not yet proposed)    View
4102  CVE-2001-1298  Candidate  Webodex PHP script 1.0 and earlier allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable.  Proposed (20020502)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall    View
69638  CVE-2014-2343  Candidate  Triangle MicroWorks SCADA Data Gateway before 3.00.0635 allows physically proximate attackers to cause a denial of service (excessive data processing) via a crafted DNP request over a serial line.  Assigned (20140313)  None (candidate not yet proposed)    View

Page 489 of 20943, showing 5 records out of 104715 total, starting on record 2441, ending on 2445

Actions