CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4106 | CVE-2001-1302 | Entry | The change password option in the Windows Security interface for Windows 2000 allows attackers to use the option to attempt to change passwords of other users on other systems or identify valid accounts by monitoring error messages, possibly due to a problem in the NetuserChangePassword function. | View | |||
69642 | CVE-2014-2347 | Candidate | Amtelco miSecureMessages (aka MSM) 6.2 does not properly manage sessions, which allows remote authenticated users to obtain sensitive information via a modified message request. | Assigned (20140313) | None (candidate not yet proposed) | View | |
4362 | CVE-2001-1562 | Candidate | Format string vulnerability in nvi before 1.79 allows local users to gain privileges via format string specifiers in a filename. | Assigned (20050714) | None (candidate not yet proposed) | View | |
69898 | CVE-2014-2603 | Candidate | Unspecified vulnerability on HP 8/20q switches, SN6000 switches, and 8Gb Simple SAN Connection Kit with firmware before 8.0.14.08.00 allows remote authenticated users to obtain sensitive information via unknown vectors. | Assigned (20140324) | None (candidate not yet proposed) | View | |
4618 | CVE-2002-0226 | Entry | retrieve_password.pl in DCForum 6.x and 2000 generates predictable new passwords based on a sessionID, which allows remote attackers to request a new password on behalf of another user and use the sessionID to calculate the new password for that user. | View |
Page 812 of 20943, showing 5 records out of 104715 total, starting on record 4056, ending on 4060