CVE List

Id CVE No. Status Description Phase Votes Comments Actions
71180  CVE-2014-3884  Candidate  Cross-site scripting (XSS) vulnerability in Usermin before 1.600 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: this might overlap CVE-2014-3924.  Assigned (20140527)  None (candidate not yet proposed)    View
5900  CVE-2002-1516  Entry  rpcbind in SGI IRIX, when using the -w command line switch, allows local users to overwrite arbitrary files via a symlink attack.        View
71436  CVE-2014-4140  Candidate  Microsoft Internet Explorer 8 through 11 allows remote attackers to bypass the ASLR protection mechanism via a crafted web site, aka "Internet Explorer ASLR Bypass Vulnerability."  Assigned (20140612)  None (candidate not yet proposed)    View
6156  CVE-2002-1774  Candidate  ** DISPUTED ** NOTE: this issue has been disputed by the vendor. Symantec Norton AntiVirus 2002 allows remote attackers to send viruses that bypass the e-mail scanning via a NULL character in the MIME header before the virus. NOTE: the vendor has disputed this issue, acknowledging that the initial scan is bypassed, but the AutoProtect feature would detect the virus before it is executed.  Assigned (20050621)  None (candidate not yet proposed)    View
71692  CVE-2014-4396  Candidate  An unspecified integrated graphics driver routine in the Intel Graphics Driver subsystem in Apple OS X before 10.9.5 does not properly validate calls, which allows attackers to execute arbitrary code in a privileged context via a crafted application, a different vulnerability than CVE-2014-4394, CVE-2014-4395, CVE-2014-4397, CVE-2014-4398, CVE-2014-4399, CVE-2014-4400, CVE-2014-4401, and CVE-2014-4416.  Assigned (20140620)  None (candidate not yet proposed)    View

Page 976 of 20943, showing 5 records out of 104715 total, starting on record 4876, ending on 4880

Actions