CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6665 | CVE-2002-2283 | Candidate | Microsoft Windows XP with Fast User Switching (FUS) enabled does not remove the "show processes from all users" privilege when the user is removed from the administrator group, which allows that user to view prosesses of other users. | Assigned (20071017) | None (candidate not yet proposed) | View | |
72201 | CVE-2014-4904 | Candidate | The Crossmo Calendar (aka com.crossmo.calendar) application 1.7.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | Assigned (20140710) | None (candidate not yet proposed) | View | |
6921 | CVE-2003-0092 | Candidate | Heap-based buffer overflow in dtsession for Solaris 2.5.1 through Solaris 9 allows local users to gain root privileges via a long HOME environment variable. | Assigned (20030211) | None (candidate not yet proposed) | View | |
72457 | CVE-2014-5160 | Candidate | ** DISPUTED ** Multiple directory traversal vulnerabilities in crs.exe in the Cell Request Service in HP Data Protector allow remote attackers to create arbitrary files via an opcode-1091 request, or create or delete arbitrary files via an opcode-305 request. NOTE: the vendor reportedly asserts that this behavior is "by design." | Assigned (20140731) | None (candidate not yet proposed) | View | |
7177 | CVE-2003-0349 | Candidate | Buffer overflow in the streaming media component for logging multicast requests in the ISAPI for the logging capability of Microsoft Windows Media Services (nsiislog.dll), as installed in IIS 5.0, allows remote attackers to execute arbitrary code via a large POST request to nsiislog.dll. | Assigned (20030528) | None (candidate not yet proposed) | View |
Page 728 of 20943, showing 5 records out of 104715 total, starting on record 3636, ending on 3640