CVE List

Id CVE No. Status Description Phase Votes Comments Actions
5383  CVE-2002-0995  Entry  login.php for PHPAuction allows remote attackers to gain privileges via a direct call to login.php with the action parameter set to "insert," which adds the provided username to the adminUsers table.        View
70919  CVE-2014-3623  Candidate  Apache WSS4J before 1.6.17 and 2.x before 2.0.2, as used in Apache CXF 2.7.x before 2.7.13 and 3.0.x before 3.0.2, when using TransportBinding, does not properly enforce the SAML SubjectConfirmation method security semantics, which allows remote attackers to conduct spoofing attacks via unspecified vectors.  Assigned (20140514)  None (candidate not yet proposed)    View
5639  CVE-2002-1255  Entry  Microsoft Outlook 2002 allows remote attackers to cause a denial of service (repeated failure) via an email message with a certain invalid header field that is accessed using POP3, IMAP, or WebDAV, aka "E-mail Header Processing Flaw Could Cause Outlook 2002 to Fail."        View
71175  CVE-2014-3879  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140527)  None (candidate not yet proposed)    View
5895  CVE-2002-1511  Entry  The vncserver wrapper for vnc before 3.3.3r2-21 uses the rand() function instead of srand(), which causes vncserver to generate weak cookies.        View

Page 572 of 20943, showing 5 records out of 104715 total, starting on record 2856, ending on 2860

Actions