CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10763  CVE-2004-2337  Candidate  The /.inlook/.crypt file for inlook 0.7.3 and earlier is installed with world readable permissions, which allows local users to obtain user POP3 credentials.  Assigned (20050816)  None (candidate not yet proposed)    View
76299  CVE-2014-8998  Candidate  lib/message.php in X7 Chat 2.0.0 through 2.0.5.1 allows remote authenticated users to execute arbitrary PHP code via a crafted HTTP header to index.php, which is processed by the preg_replace function with the eval switch.  Assigned (20141119)  None (candidate not yet proposed)    View
11019  CVE-2004-2593  Candidate  Buffer overflow in command-packet processing of Quake II server before R1Q2, as used in multiple products, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a packet with a long cmd_args buffer.  Assigned (20051129)  None (candidate not yet proposed)    View
76555  CVE-2014-9254  Candidate  bb_func_unsub.php in MiniBB 3.1 before 20141127 uses an incorrect regular expression, which allows remote attackers to conduct SQl injection attacks via the code parameter in an unsubscribe action to index.php.  Assigned (20141204)  None (candidate not yet proposed)    View
11275  CVE-2005-0069  Candidate  The (1) tcltags or (2) vimspell.sh scripts in vim 6.3 allow local users to overwrite or create arbitrary files via a symlink attack on temporary files.  Assigned (20050114)  None (candidate not yet proposed)    View

Page 903 of 20943, showing 5 records out of 104715 total, starting on record 4511, ending on 4515

Actions