CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
72457 | CVE-2014-5160 | Candidate | ** DISPUTED ** Multiple directory traversal vulnerabilities in crs.exe in the Cell Request Service in HP Data Protector allow remote attackers to create arbitrary files via an opcode-1091 request, or create or delete arbitrary files via an opcode-305 request. NOTE: the vendor reportedly asserts that this behavior is "by design." | Assigned (20140731) | None (candidate not yet proposed) | View | |
7177 | CVE-2003-0349 | Candidate | Buffer overflow in the streaming media component for logging multicast requests in the ISAPI for the logging capability of Microsoft Windows Media Services (nsiislog.dll), as installed in IIS 5.0, allows remote attackers to execute arbitrary code via a large POST request to nsiislog.dll. | Assigned (20030528) | None (candidate not yet proposed) | View | |
72713 | CVE-2014-5416 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20140822) | None (candidate not yet proposed) | View | |
7433 | CVE-2003-0606 | Candidate | sup 1.8 and earlier does not properly create temporary files, which allows local users to overwrite arbitrary files. | Assigned (20030728) | None (candidate not yet proposed) | View | |
72969 | CVE-2014-5671 | Candidate | The Super Stickman Golf (aka com.noodlecake.ssg) application 2.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | Assigned (20140830) | None (candidate not yet proposed) | View |
Page 736 of 20943, showing 5 records out of 104715 total, starting on record 3676, ending on 3680