CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4364  CVE-2001-1564  Candidate  setrlimit in HP-UX 10.01, 10.10, 10.24, 10.20, 11.00, 11.04 and 11.11 does not properly enforce core file size on processes after setuid or setgid privileges are dropeed, which could allow local users to cause a denial of service by exhausting available disk space.  Assigned (20050714)  None (candidate not yet proposed)    View
69900  CVE-2014-2605  Candidate  Unspecified vulnerability in HP StoreVirtual 4000 Storage and StoreVirtual VSA 9.5 through 11.0 allows remote attackers to obtain sensitive information via unknown vectors.  Assigned (20140324)  None (candidate not yet proposed)    View
4620  CVE-2002-0228  Candidate  Microsoft MSN Messenger allows remote attackers to use Javascript that references an ActiveX object to obtain sensitive information such as display names and web site navigation, and possibly more when the user is connected to certain Microsoft sites (or DNS-spoofed sites).  Proposed (20020502)  ACCEPT(2) Cole, Green | NOOP(1) Foat | REVIEWING(1) Wall    View
70156  CVE-2014-2861  Candidate  Incomplete blacklist vulnerability in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted string, as demonstrated by bypassing a protection mechanism that removes only the "alert" string.  Assigned (20140415)  None (candidate not yet proposed)    View
4876  CVE-2002-0484  Entry  move_uploaded_file in PHP does not does not check for the base directory (open_basedir), which could allow remote attackers to upload files to unintended locations on the system.        View

Page 974 of 20943, showing 5 records out of 104715 total, starting on record 4866, ending on 4870

Actions