CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
1650 | CVE-2000-0072 | Entry | Visual Casel (Vcasel) does not properly prevent users from executing files, which allows local users to use a relative pathname to specify an alternate file which has an approved name and possibly gain privileges. | View | |||
7283 | CVE-2003-0456 | Candidate | VisNetic WebSite 3.5 allows remote attackers to obtain the full pathname of the server via a request containing a folder that does not exist, which leaks the pathname in an error message, as demonstrated using _vti_bin/fpcount.exe. | Assigned (20030623) | None (candidate not yet proposed) | View | |
50298 | CVE-2011-2386 | Candidate | VisiWaveReport.exe in AZO Technologies, Inc. VisiWave Site Survey before 2.1.9 allows user-assisted remote attackers to execute arbitrary code via a (1) vws and (2) vwr file with an invalid Type property, which triggers an untrusted pointer dereference. | Assigned (20110605) | None (candidate not yet proposed) | View | |
73694 | CVE-2014-6394 | Candidate | visionmedia send before 0.8.4 for Node.js uses a partial comparison for verifying whether a directory is within the document root, which allows remote attackers to access restricted directories, as demonstrated using "public-restricted" under a "public" directory. | Assigned (20140915) | None (candidate not yet proposed) | View | |
77105 | CVE-2014-9804 | Candidate | vision.c in ImageMagick allows remote attackers to cause a denial of service (infinite loop) via vectors related to "too many object." | Assigned (20160602) | None (candidate not yet proposed) | View |
Page 532 of 20943, showing 5 records out of 104715 total, starting on record 2656, ending on 2660