CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
68871 | CVE-2014-1576 | Candidate | Heap-based buffer overflow in the nsTransformedTextRun function in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 allows remote attackers to execute arbitrary code via Cascading Style Sheets (CSS) token sequences that trigger changes to capitalization style. | Assigned (20140116) | None (candidate not yet proposed) | View | |
3591 | CVE-2001-0784 | Entry | Directory traversal vulnerability in Icecast 1.3.10 and earlier allows remote attackers to read arbitrary files via a modified .. (dot dot) attack using encoded URL characters. | View | |||
69127 | CVE-2014-1832 | Candidate | Phusion Passenger 4.0.37 allows local users to write to certain files and directories via a symlink attack on (1) control_process.pid or a (2) generation-* file. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-1831. | Assigned (20140130) | None (candidate not yet proposed) | View | |
3847 | CVE-2001-1043 | Entry | ArGoSoft FTP Server 1.2.2.2 allows remote attackers to read arbitrary files and directories by uploading a .lnk (link) file that points to the target file. | View | |||
69383 | CVE-2014-2088 | Candidate | Unrestricted file upload vulnerability in ilias.php in ILIAS 4.4.1 allows remote authenticated users to execute arbitrary PHP code by using a .php filename in an upload_files action to the uploadFiles command, and then accessing the .php file via a direct request to a certain client_id pathname. | Assigned (20140224) | None (candidate not yet proposed) | View |
Page 569 of 20943, showing 5 records out of 104715 total, starting on record 2841, ending on 2845