CVE List

Id CVE No. Status Description Phase Votes Comments Actions
70145  CVE-2014-2850  Candidate  The network interface configuration page (netinterface) in Sophos Web Appliance before 3.8.2 allows remote administrators to execute arbitrary commands via shell metacharacters in the address parameter.  Assigned (20140411)  None (candidate not yet proposed)    View
4865  CVE-2002-0473  Entry  db.php in phpBB 2.0 (aka phpBB2) RC-3 and earlier allows remote attackers to execute arbitrary code from remote servers via the phpbb_root_path parameter.        View
70401  CVE-2014-3106  Candidate  IBM Rational ClearQuest 7.1 before 7.1.2.15, 8.0.0 before 8.0.0.12, and 8.0.1 before 8.0.1.5 does not properly implement the Local Access Only protection mechanism, which allows remote attackers to bypass authentication and read files via the Help Server Administration feature.  Assigned (20140429)  None (candidate not yet proposed)    View
5121  CVE-2002-0731  Candidate  Cross-site scripting vulnerability in demonstration scripts for vqServer allows remote attackers to execute arbitrary script via a link that contains the script in arguments to demo scripts such as respond.pl.  Proposed (20020726)  ACCEPT(1) Cole | NOOP(4) Armstrong, Cox, Foat, Wall    View
70657  CVE-2014-3361  Candidate  The ALG module in Cisco IOS 15.0 through 15.4 does not properly implement SIP over NAT, which allows remote attackers to cause a denial of service (device reload) via multipart SDP IPv4 traffic, aka Bug ID CSCun54071.  Assigned (20140507)  None (candidate not yet proposed)    View

Page 88 of 20943, showing 5 records out of 104715 total, starting on record 436, ending on 440

Actions