CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10499 | CVE-2004-2073 | Candidate | Linux-VServer 1.24 allows local users with root privileges on a virtual server to gain access to the filesystem outside the virtual server via a modified chroot-again exploit using the chmod command. | Assigned (20050519) | None (candidate not yet proposed) | View | |
76035 | CVE-2014-8734 | Candidate | The Organic Groups Menu (aka OG Menu) module before 7.x-2.2 for Drupal allows remote authenticated users with the "access administration pages" permission to change module settings via unspecified vectors. | Assigned (20141112) | None (candidate not yet proposed) | View | |
10755 | CVE-2004-2329 | Candidate | Kerio Personal Firewall (KPF) 2.1.5 allows local users to execute arbitrary code with SYSTEM privileges via the Load button in the Firewall Configuration Files option, which does not drop privileges before opening the file loading dialog box. | Assigned (20050816) | None (candidate not yet proposed) | View | |
76291 | CVE-2014-8990 | Candidate | default-rsyncssh.lua in Lsyncd 2.1.5 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in a filename. | Assigned (20141119) | None (candidate not yet proposed) | View | |
11011 | CVE-2004-2585 | Candidate | Cross-site scripting (XSS) vulnerability in frmCompose.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote attackers to inject arbitrary web script or HTML via Javascript to the "check spelling" feature in the compose area. | Assigned (20051128) | None (candidate not yet proposed) | View |
Page 865 of 20943, showing 5 records out of 104715 total, starting on record 4321, ending on 4325