CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
69892 | CVE-2014-2597 | Candidate | PCNetSoftware RAC Server 4.0.4 and 4.0.5 allows local users to cause a denial of service (disabled keyboard or crash) via a large input buffer to unspecified IOCTL requests in RACDriver.sys, which triggers a buffer over-read. | Assigned (20140324) | None (candidate not yet proposed) | View | |
70148 | CVE-2014-2853 | Candidate | Cross-site scripting (XSS) vulnerability in includes/actions/InfoAction.php in MediaWiki before 1.21.9 and 1.22.x before 1.22.6 allows remote attackers to inject arbitrary web script or HTML via the sort key in an info action. | Assigned (20140414) | None (candidate not yet proposed) | View | |
70404 | CVE-2014-3109 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20140429) | None (candidate not yet proposed) | View | |
70660 | CVE-2014-3364 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in the web framework in Cisco Prime Security Manager (aka PRSM) 9.2.1-2 and earlier allow remote attackers to inject arbitrary web script or HTML via a (1) Access Policies or (2) Device Summary Dashboard parameter, aka Bug ID CSCuq80661. | Assigned (20140507) | None (candidate not yet proposed) | View | |
70916 | CVE-2014-3620 | Candidate | cURL and libcurl before 7.38.0 allow remote attackers to bypass the Same Origin Policy and set cookies for arbitrary sites by setting a cookie for a top-level domain. | Assigned (20140514) | None (candidate not yet proposed) | View |
Page 1474 of 20943, showing 5 records out of 104715 total, starting on record 7366, ending on 7370