CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69379  CVE-2014-2084  Candidate  Skybox View Appliances with ISO 6.3.33-2.14, 6.3.31-2.14, 6.4.42-2.54, 6.4.45-2.56, and 6.4.46-2.57 does not properly restrict access to the Admin interface, which allows remote attackers to obtain sensitive information via a request to (1) scripts/commands/getSystemInformation or (2) scripts/commands/getNetworkConfigurationInfo, cause a denial of service (reboot) via a request to scripts/commands/reboot, or cause a denial of service (shutdown) via a request to scripts/commands/shutdown.  Assigned (20140219)  None (candidate not yet proposed)    View
69635  CVE-2014-2340  Candidate  Cross-site request forgery (CSRF) vulnerability in the XCloner plugin before 3.1.1 for WordPress allows remote attackers to hijack the authentication of administrators for requests that create website backups via a request to wp-admin/plugins.php.  Assigned (20140312)  None (candidate not yet proposed)    View
4355  CVE-2001-1555  Candidate  pt_chmod in Solaris 8 does not call fdetach to reset terminal privileges when users log out of terminals, which allows local users to write to other users" terminals by modifying the ACL of a TTY.  Assigned (20050714)  None (candidate not yet proposed)    View
69891  CVE-2014-2596  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140324)  None (candidate not yet proposed)    View
70147  CVE-2014-2852  Candidate  OpenAFS before 1.6.7 delays the listen thread when an RXS_CheckResponse fails, which allows remote attackers to cause a denial of service (performance degradation) via an invalid packet.  Assigned (20140414)  None (candidate not yet proposed)    View

Page 1396 of 20943, showing 5 records out of 104715 total, starting on record 6976, ending on 6980

Actions