CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10499  CVE-2004-2073  Candidate  Linux-VServer 1.24 allows local users with root privileges on a virtual server to gain access to the filesystem outside the virtual server via a modified chroot-again exploit using the chmod command.  Assigned (20050519)  None (candidate not yet proposed)    View
76035  CVE-2014-8734  Candidate  The Organic Groups Menu (aka OG Menu) module before 7.x-2.2 for Drupal allows remote authenticated users with the "access administration pages" permission to change module settings via unspecified vectors.  Assigned (20141112)  None (candidate not yet proposed)    View
10755  CVE-2004-2329  Candidate  Kerio Personal Firewall (KPF) 2.1.5 allows local users to execute arbitrary code with SYSTEM privileges via the Load button in the Firewall Configuration Files option, which does not drop privileges before opening the file loading dialog box.  Assigned (20050816)  None (candidate not yet proposed)    View
76291  CVE-2014-8990  Candidate  default-rsyncssh.lua in Lsyncd 2.1.5 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in a filename.  Assigned (20141119)  None (candidate not yet proposed)    View
11011  CVE-2004-2585  Candidate  Cross-site scripting (XSS) vulnerability in frmCompose.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote attackers to inject arbitrary web script or HTML via Javascript to the "check spelling" feature in the compose area.  Assigned (20051128)  None (candidate not yet proposed)    View

Page 865 of 20943, showing 5 records out of 104715 total, starting on record 4321, ending on 4325

Actions