CVE List

Id CVE No. Status Description Phase Votes Comments Actions
68866  CVE-2014-1571  Candidate  Bugzilla 2.x through 4.0.x before 4.0.15, 4.1.x and 4.2.x before 4.2.11, 4.3.x and 4.4.x before 4.4.6, and 4.5.x before 4.5.6 allows remote authenticated users to obtain sensitive private-comment information by leveraging a role as a flag recipient, related to Bug.pm, Flag.pm, and a mail template.  Assigned (20140116)  None (candidate not yet proposed)    View
69122  CVE-2014-1827  Candidate  The iThoughtsHD app 4.19 for iOS on iPad devices, when the WiFi Transfer feature is used, allows remote attackers to upload arbitrary files by placing a %00 sequence after a dangerous extension, as demonstrated by a .html%00.txt file.  Assigned (20140129)  None (candidate not yet proposed)    View
69378  CVE-2014-2083  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140219)  None (candidate not yet proposed)    View
4098  CVE-2001-1294  Candidate  Buffer overflow in A-V Tronics Inetserv 3.2.1 and earlier allows remote attackers to cause a denial of service (crash) in the Webmail interface via a long username and password.  Proposed (20020502)  ACCEPT(2) Frech, Green | NOOP(4) Cole, Cox, Foat, Wall    View
69634  CVE-2014-2339  Candidate  Multiple SQL injection vulnerabilities in bbs/ajax.autosave.php in GNUboard 5.x and possibly earlier allow remote authenticated users to execute arbitrary SQL commands via the (1) subject or (2) content parameter.  Assigned (20140312)  None (candidate not yet proposed)    View

Page 775 of 20943, showing 5 records out of 104715 total, starting on record 3871, ending on 3875

Actions