CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6665  CVE-2002-2283  Candidate  Microsoft Windows XP with Fast User Switching (FUS) enabled does not remove the "show processes from all users" privilege when the user is removed from the administrator group, which allows that user to view prosesses of other users.  Assigned (20071017)  None (candidate not yet proposed)    View
72201  CVE-2014-4904  Candidate  The Crossmo Calendar (aka com.crossmo.calendar) application 1.7.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140710)  None (candidate not yet proposed)    View
6921  CVE-2003-0092  Candidate  Heap-based buffer overflow in dtsession for Solaris 2.5.1 through Solaris 9 allows local users to gain root privileges via a long HOME environment variable.  Assigned (20030211)  None (candidate not yet proposed)    View
72457  CVE-2014-5160  Candidate  ** DISPUTED ** Multiple directory traversal vulnerabilities in crs.exe in the Cell Request Service in HP Data Protector allow remote attackers to create arbitrary files via an opcode-1091 request, or create or delete arbitrary files via an opcode-305 request. NOTE: the vendor reportedly asserts that this behavior is "by design."  Assigned (20140731)  None (candidate not yet proposed)    View
7177  CVE-2003-0349  Candidate  Buffer overflow in the streaming media component for logging multicast requests in the ISAPI for the logging capability of Microsoft Windows Media Services (nsiislog.dll), as installed in IIS 5.0, allows remote attackers to execute arbitrary code via a large POST request to nsiislog.dll.  Assigned (20030528)  None (candidate not yet proposed)    View

Page 728 of 20943, showing 5 records out of 104715 total, starting on record 3636, ending on 3640

Actions