CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69892  CVE-2014-2597  Candidate  PCNetSoftware RAC Server 4.0.4 and 4.0.5 allows local users to cause a denial of service (disabled keyboard or crash) via a large input buffer to unspecified IOCTL requests in RACDriver.sys, which triggers a buffer over-read.  Assigned (20140324)  None (candidate not yet proposed)    View
70148  CVE-2014-2853  Candidate  Cross-site scripting (XSS) vulnerability in includes/actions/InfoAction.php in MediaWiki before 1.21.9 and 1.22.x before 1.22.6 allows remote attackers to inject arbitrary web script or HTML via the sort key in an info action.  Assigned (20140414)  None (candidate not yet proposed)    View
70404  CVE-2014-3109  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140429)  None (candidate not yet proposed)    View
70660  CVE-2014-3364  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the web framework in Cisco Prime Security Manager (aka PRSM) 9.2.1-2 and earlier allow remote attackers to inject arbitrary web script or HTML via a (1) Access Policies or (2) Device Summary Dashboard parameter, aka Bug ID CSCuq80661.  Assigned (20140507)  None (candidate not yet proposed)    View
70916  CVE-2014-3620  Candidate  cURL and libcurl before 7.38.0 allow remote attackers to bypass the Same Origin Policy and set cookies for arbitrary sites by setting a cookie for a top-level domain.  Assigned (20140514)  None (candidate not yet proposed)    View

Page 1474 of 20943, showing 5 records out of 104715 total, starting on record 7366, ending on 7370

Actions