CVE List

Id CVE No. Status Description Phase Votes Comments Actions
70656  CVE-2014-3360  Candidate  Cisco IOS 12.4 and 15.0 through 15.4 and IOS XE 3.1.xS, 3.2.xS, 3.3.xS, 3.4.xS, 3.5.xS, 3.6.xS, and 3.7.xS before 3.7.6S; 3.8.xS, 3.9.xS, and 3.10.xS before 3.10.1S; and 3.11.xS before 3.12S allow remote attackers to cause a denial of service (device reload) via a crafted SIP message, aka Bug ID CSCul46586.  Assigned (20140507)  None (candidate not yet proposed)    View
70912  CVE-2014-3616  Candidate  nginx 0.5.6 through 1.7.4, when using the same shared ssl_session_cache or ssl_session_ticket_key for multiple servers, can reuse a cached SSL session for an unrelated context, which allows remote attackers with certain privileges to conduct "virtual host confusion" attacks.  Assigned (20140514)  None (candidate not yet proposed)    View
71168  CVE-2014-3872  Candidate  Multiple SQL injection vulnerabilities in the administration login page in D-Link DAP-1350 (Rev. A1) with firmware 1.14 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password.  Assigned (20140527)  None (candidate not yet proposed)    View
71424  CVE-2014-4128  Candidate  Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."  Assigned (20140612)  None (candidate not yet proposed)    View
6144  CVE-2002-1762  Candidate  Microsoft Baseline Security Analyzer (MBSA) 1.0 stores security scans in a known location C:Documents and SettingsusernameSecurityScans in plaintext, which could allow remote attackers to obtain sensitive information about the system via malicious active content such as ActiveX controls or Java.  Assigned (20050621)  None (candidate not yet proposed)    View

Page 1165 of 20943, showing 5 records out of 104715 total, starting on record 5821, ending on 5825

Actions