CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69905  CVE-2014-2610  Candidate  Directory traversal vulnerability in the Content Acceleration Pack (CAP) web application in HP Executive Scorecard 9.40 and 9.41 allows remote authenticated users to execute arbitrary code by uploading an executable file, aka ZDI-CAN-2117.  Assigned (20140324)  None (candidate not yet proposed)    View
70161  CVE-2014-2866  Candidate  PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 relies on client JavaScript code for access restrictions, which allows remote attackers to perform unspecified operations by modifying this code.  Assigned (20140415)  None (candidate not yet proposed)    View
70417  CVE-2014-3122  Candidate  The try_to_unmap_cluster function in mm/rmap.c in the Linux kernel before 3.14.3 does not properly consider which pages must be locked, which allows local users to cause a denial of service (system crash) by triggering a memory-usage pattern that requires removal of page-table mappings.  Assigned (20140429)  None (candidate not yet proposed)    View
70673  CVE-2014-3377  Candidate  snmpd in Cisco IOS XR 5.1 and earlier allows remote authenticated users to cause a denial of service (process reload) via a malformed SNMPv2 packet, aka Bug ID CSCun67791.  Assigned (20140507)  None (candidate not yet proposed)    View
70929  CVE-2014-3633  Candidate  The qemuDomainGetBlockIoTune function in qemu/qemu_driver.c in libvirt before 1.2.9, when a disk has been hot-plugged or removed from the live image, allows remote attackers to cause a denial of service (crash) or read sensitive heap information via a crafted blkiotune query, which triggers an out-of-bounds read.  Assigned (20140514)  None (candidate not yet proposed)    View

Page 1351 of 20943, showing 5 records out of 104715 total, starting on record 6751, ending on 6755

Actions