CVE List

Id CVE No. Status Description Phase Votes Comments Actions
70153  CVE-2014-2858  Candidate  Directory traversal vulnerability in the Resources plugin 1.0.0 before 1.2.6 for Pivotal Grails 2.0.0 through 2.3.6 allows remote attackers to obtain sensitive information via unspecified vectors related to a "configured block." NOTE: this issue was SPLIT from CVE-2014-0053 per ADT2 due to different vulnerability types.  Assigned (20140415)  None (candidate not yet proposed)    View
4873  CVE-2002-0481  Candidate  An interaction between Windows Media Player (WMP) and Outlook 2002 allows remote attackers to bypass Outlook security settings and execute Javascript via an IFRAME in an HTML email message that references .WMS (Windows Media Skin) or other WMP media files, whose onload handlers execute the player.LaunchURL() Javascript function.  Proposed (20020611)  ACCEPT(1) Frech | NOOP(4) Cole, Cox, Foat, Green | REVIEWING(1) Wall    View
70409  CVE-2014-3114  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140429)  None (candidate not yet proposed)    View
5129  CVE-2002-0739  Candidate  Cross-site scripting in PostCalendar 3.02 allows remote attackers to insert arbitrary HTML and script, and steal cookies, by modifying a calendar entry in its preview page.  Proposed (20020726)  NOOP(5) Armstrong, Cole, Cox, Foat, Wall    View
70665  CVE-2014-3369  Candidate  The SIP IX implementation in Cisco TelePresence Video Communication Server (VCS) and Expressway Software before X8.1.1 allows remote attackers to cause a denial of service (device reload) via crafted SDP packets, aka Bug ID CSCuo42252.  Assigned (20140507)  None (candidate not yet proposed)    View

Page 1336 of 20943, showing 5 records out of 104715 total, starting on record 6676, ending on 6680

Actions