CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1650  CVE-2000-0072  Entry  Visual Casel (Vcasel) does not properly prevent users from executing files, which allows local users to use a relative pathname to specify an alternate file which has an approved name and possibly gain privileges.        View
7283  CVE-2003-0456  Candidate  VisNetic WebSite 3.5 allows remote attackers to obtain the full pathname of the server via a request containing a folder that does not exist, which leaks the pathname in an error message, as demonstrated using _vti_bin/fpcount.exe.  Assigned (20030623)  None (candidate not yet proposed)    View
50298  CVE-2011-2386  Candidate  VisiWaveReport.exe in AZO Technologies, Inc. VisiWave Site Survey before 2.1.9 allows user-assisted remote attackers to execute arbitrary code via a (1) vws and (2) vwr file with an invalid Type property, which triggers an untrusted pointer dereference.  Assigned (20110605)  None (candidate not yet proposed)    View
73694  CVE-2014-6394  Candidate  visionmedia send before 0.8.4 for Node.js uses a partial comparison for verifying whether a directory is within the document root, which allows remote attackers to access restricted directories, as demonstrated using "public-restricted" under a "public" directory.  Assigned (20140915)  None (candidate not yet proposed)    View
77105  CVE-2014-9804  Candidate  vision.c in ImageMagick allows remote attackers to cause a denial of service (infinite loop) via vectors related to "too many object."  Assigned (20160602)  None (candidate not yet proposed)    View

Page 532 of 20943, showing 5 records out of 104715 total, starting on record 2656, ending on 2660

Actions