CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
69131 | CVE-2014-1836 | Candidate | Absolute path traversal vulnerability in htdocs/libraries/image-editor/image-edit.php in ImpressCMS before 1.3.6 allows remote attackers to delete arbitrary files via a full pathname in the image_path parameter in a cancel action. | Assigned (20140130) | None (candidate not yet proposed) | View | |
69387 | CVE-2014-2092 | Candidate | Cross-site scripting (XSS) vulnerability in lib/filemanager/ImageManager/editorFrame.php in CMS Made Simple 1.11.10 allows remote attackers to inject arbitrary web script or HTML via the action parameter, a different issue than CVE-2014-0334. NOTE: the original disclosure also reported issues that may not cross privilege boundaries. | Assigned (20140224) | None (candidate not yet proposed) | View | |
69643 | CVE-2014-2348 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20140313) | None (candidate not yet proposed) | View | |
4363 | CVE-2001-1563 | Candidate | Unknown vulnerability in Tomcat 3.2.1 running on HP Secure OS for Linux 1.0 allows attackers to access servlet resources. NOTE: due to the vagueness of the vendor advisory, it is not clear whether this issue is already covered by other CVE identifiers. | Assigned (20050714) | None (candidate not yet proposed) | View | |
69899 | CVE-2014-2604 | Candidate | Unspecified vulnerability in HP IceWall SSO 10.0 Dfw and IceWall MCRP 2.1 and 3.0 allows remote attackers to cause a denial of service via unknown vectors. | Assigned (20140324) | None (candidate not yet proposed) | View |
Page 889 of 20943, showing 5 records out of 104715 total, starting on record 4441, ending on 4445