CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69633  CVE-2014-2338  Candidate  IKEv2 in strongSwan 4.0.7 before 5.1.3 allows remote attackers to bypass authentication by rekeying an IKE_SA during (1) initiation or (2) re-authentication, which triggers the IKE_SA state to be set to established.  Assigned (20140312)  None (candidate not yet proposed)    View
4353  CVE-2001-1553  Candidate  Buffer overflow in setiathome for SETI@home 3.03, if installed setuid, could allow local users to execute arbitrary code via long command line options (1) socks_server, (2) socks_user, and (3) socks_passwd. NOTE: since the default configuration of setiathome is not setuid, perhaps this issue should not be included in CVE.  Assigned (20050714)  None (candidate not yet proposed)    View
69889  CVE-2014-2594  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140324)  None (candidate not yet proposed)    View
4609  CVE-2002-0217  Candidate  Cross-site scripting (CSS) vulnerabilities in the Private Message System for XOOPS 1.0 RC1 allow remote attackers to execute Javascript on other web clients via (1) the Title field or a Private Message Box or (2) the image field parameter in pmlite.php.  Proposed (20020502)  ACCEPT(1) Green | NOOP(3) Cole, Foat, Wall    View
70145  CVE-2014-2850  Candidate  The network interface configuration page (netinterface) in Sophos Web Appliance before 3.8.2 allows remote administrators to execute arbitrary commands via shell metacharacters in the address parameter.  Assigned (20140411)  None (candidate not yet proposed)    View

Page 696 of 20943, showing 5 records out of 104715 total, starting on record 3476, ending on 3480

Actions