CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4364 | CVE-2001-1564 | Candidate | setrlimit in HP-UX 10.01, 10.10, 10.24, 10.20, 11.00, 11.04 and 11.11 does not properly enforce core file size on processes after setuid or setgid privileges are dropeed, which could allow local users to cause a denial of service by exhausting available disk space. | Assigned (20050714) | None (candidate not yet proposed) | View | |
69900 | CVE-2014-2605 | Candidate | Unspecified vulnerability in HP StoreVirtual 4000 Storage and StoreVirtual VSA 9.5 through 11.0 allows remote attackers to obtain sensitive information via unknown vectors. | Assigned (20140324) | None (candidate not yet proposed) | View | |
4620 | CVE-2002-0228 | Candidate | Microsoft MSN Messenger allows remote attackers to use Javascript that references an ActiveX object to obtain sensitive information such as display names and web site navigation, and possibly more when the user is connected to certain Microsoft sites (or DNS-spoofed sites). | Proposed (20020502) | ACCEPT(2) Cole, Green | NOOP(1) Foat | REVIEWING(1) Wall | View | |
70156 | CVE-2014-2861 | Candidate | Incomplete blacklist vulnerability in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted string, as demonstrated by bypassing a protection mechanism that removes only the "alert" string. | Assigned (20140415) | None (candidate not yet proposed) | View | |
4876 | CVE-2002-0484 | Entry | move_uploaded_file in PHP does not does not check for the base directory (open_basedir), which could allow remote attackers to upload files to unintended locations on the system. | View |
Page 974 of 20943, showing 5 records out of 104715 total, starting on record 4866, ending on 4870