CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
10763 | CVE-2004-2337 | Candidate | The /.inlook/.crypt file for inlook 0.7.3 and earlier is installed with world readable permissions, which allows local users to obtain user POP3 credentials. | Assigned (20050816) | None (candidate not yet proposed) | View | |
76299 | CVE-2014-8998 | Candidate | lib/message.php in X7 Chat 2.0.0 through 2.0.5.1 allows remote authenticated users to execute arbitrary PHP code via a crafted HTTP header to index.php, which is processed by the preg_replace function with the eval switch. | Assigned (20141119) | None (candidate not yet proposed) | View | |
11019 | CVE-2004-2593 | Candidate | Buffer overflow in command-packet processing of Quake II server before R1Q2, as used in multiple products, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a packet with a long cmd_args buffer. | Assigned (20051129) | None (candidate not yet proposed) | View | |
76555 | CVE-2014-9254 | Candidate | bb_func_unsub.php in MiniBB 3.1 before 20141127 uses an incorrect regular expression, which allows remote attackers to conduct SQl injection attacks via the code parameter in an unsubscribe action to index.php. | Assigned (20141204) | None (candidate not yet proposed) | View | |
11275 | CVE-2005-0069 | Candidate | The (1) tcltags or (2) vimspell.sh scripts in vim 6.3 allow local users to overwrite or create arbitrary files via a symlink attack on temporary files. | Assigned (20050114) | None (candidate not yet proposed) | View |
Page 898 of 20943, showing 5 records out of 104715 total, starting on record 4486, ending on 4490