CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69131  CVE-2014-1836  Candidate  Absolute path traversal vulnerability in htdocs/libraries/image-editor/image-edit.php in ImpressCMS before 1.3.6 allows remote attackers to delete arbitrary files via a full pathname in the image_path parameter in a cancel action.  Assigned (20140130)  None (candidate not yet proposed)    View
69387  CVE-2014-2092  Candidate  Cross-site scripting (XSS) vulnerability in lib/filemanager/ImageManager/editorFrame.php in CMS Made Simple 1.11.10 allows remote attackers to inject arbitrary web script or HTML via the action parameter, a different issue than CVE-2014-0334. NOTE: the original disclosure also reported issues that may not cross privilege boundaries.  Assigned (20140224)  None (candidate not yet proposed)    View
69643  CVE-2014-2348  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140313)  None (candidate not yet proposed)    View
4363  CVE-2001-1563  Candidate  Unknown vulnerability in Tomcat 3.2.1 running on HP Secure OS for Linux 1.0 allows attackers to access servlet resources. NOTE: due to the vagueness of the vendor advisory, it is not clear whether this issue is already covered by other CVE identifiers.  Assigned (20050714)  None (candidate not yet proposed)    View
69899  CVE-2014-2604  Candidate  Unspecified vulnerability in HP IceWall SSO 10.0 Dfw and IceWall MCRP 2.1 and 3.0 allows remote attackers to cause a denial of service via unknown vectors.  Assigned (20140324)  None (candidate not yet proposed)    View

Page 889 of 20943, showing 5 records out of 104715 total, starting on record 4441, ending on 4445

Actions