CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
3848 | CVE-2001-1044 | Candidate | Basilix Webmail 0.9.7beta, and possibly other versions, stores *.class and *.inc files under the document root and does not restrict access, which could allows remote attackers to obtain sensitive information such as MySQL passwords and usernames from the mysql.class file. | Proposed (20020131) | ACCEPT(2) Frech, Green | NOOP(4) Armstrong, Cole, Foat, Wall | View | |
69384 | CVE-2014-2089 | Candidate | ILIAS 4.4.1 allows remote attackers to execute arbitrary PHP code via an e-mail attachment that leads to creation of a .php file with a certain client_id pathname. | Assigned (20140224) | None (candidate not yet proposed) | View | |
4104 | CVE-2001-1300 | Candidate | Directory traversal vulnerability in Dynu FTP server 1.05 and earlier allows remote attackers to read arbitrary files via a .. in the CD (CWD) command. | Proposed (20020502) | ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall | View | |
69640 | CVE-2014-2345 | Candidate | COPA-DATA zenon DNP3 NG driver (DNP3 master) 7.10 and 7.11 through 7.11 SP0 build 10238 and zenon DNP3 Process Gateway (DNP3 outstation) 7.11 SP0 build 10238 and earlier allow remote attackers to cause a denial of service (infinite loop and process crash) by sending a crafted DNP3 packet over TCP. | Assigned (20140313) | None (candidate not yet proposed) | View | |
4360 | CVE-2001-1560 | Candidate | Win32k.sys (aka Graphics Device Interface (GDI)) in Windows 2000 and XP allows local users to cause a denial of service (system crash) by calling the ShowWindow function after receiving a WM_NCCREATE message. | Assigned (20050714) | None (candidate not yet proposed) | View |
Page 650 of 20943, showing 5 records out of 104715 total, starting on record 3246, ending on 3250