CVE List

Id CVE No. Status Description Phase Votes Comments Actions
67334  CVE-2013-7387  Candidate  Session fixation vulnerability in DataLife Engine (DLE) 9.7 and earlier allows remote attackers to hijack web sessions via the PHPSESSID cookie.  Assigned (20140602)  None (candidate not yet proposed)    View
2054  CVE-2000-0476  Candidate  xterm, Eterm, and rxvt allow an attacker to cause a denial of service by embedding certain escape characters which force the window to be resized.  Proposed (20000712)  ACCEPT(2) Levy, Ozancin | MODIFY(1) Frech | NOOP(2) LeBlanc, Wall  Frech> XF:xterm-control-characters-dos(4987)  View
67590  CVE-2014-0181  Candidate  The Netlink implementation in the Linux kernel through 3.14.1 does not provide a mechanism for authorizing socket operations based on the opener of a socket, which allows local users to bypass intended access restrictions and modify network configurations by using a Netlink socket for the (1) stdout or (2) stderr of a setuid program.  Assigned (20131203)  None (candidate not yet proposed)    View
2310  CVE-2000-0734  Candidate  eEye IRIS 1.01 beta allows remote attackers to cause a denial of service via a large number of UDP connections.  Proposed (20000921)  MODIFY(1) Levy | NOOP(2) Cole, Wall | REJECT(1) Frech  Levy> The product is in wide use even while is in beta. eEye brought another company and made all their previous customers upgrade to the new software.  View
67846  CVE-2014-0437  Candidate  Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.72 and earlier, 5.5.34 and earlier, and 5.6.14 and earlier allows remote authenticated users to affect availability via unknown vectors related to Optimizer.  Assigned (20131212)  None (candidate not yet proposed)    View

Page 1093 of 20943, showing 5 records out of 104715 total, starting on record 5461, ending on 5465

Actions