CVE List

Id CVE No. Status Description Phase Votes Comments Actions
70151  CVE-2014-2856  Candidate  Cross-site scripting (XSS) vulnerability in scheduler/client.c in Common Unix Printing System (CUPS) before 1.7.2 allows remote attackers to inject arbitrary web script or HTML via the URL path, related to the is_path_absolute function.  Assigned (20140415)  None (candidate not yet proposed)    View
4871  CVE-2002-0479  Candidate  Gravity Storm Service Pack Manager 2000 creates a hidden share (SPM2000c$) mapped to the C drive, which may allow local users to bypass access restrictions on certain directories in the C drive, such as system32, by accessing them through the hidden share.  Proposed (20020611)  ACCEPT(1) Frech | NOOP(4) Cole, Cox, Foat, Wall | REVIEWING(1) Green    View
70407  CVE-2014-3112  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140429)  None (candidate not yet proposed)    View
5127  CVE-2002-0737  Entry  Sambar web server before 5.2 beta 1 allows remote attackers to obtain source code of server-side scripts, or cause a denial of service (resource exhaustion) via DOS devices, using a URL that ends with a space and a null character.        View
70663  CVE-2014-3367  Candidate  Cross-site scripting (XSS) vulnerability in the vCloud Director component in Cisco Nexus 1000V InterCloud for VMware allows remote attackers to inject arbitrary web script or HTML via an unspecified value, aka Bug ID CSCuq90524.  Assigned (20140507)  None (candidate not yet proposed)    View

Page 571 of 20943, showing 5 records out of 104715 total, starting on record 2851, ending on 2855

Actions