CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
70164 | CVE-2014-2869 | Candidate | PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to obtain sensitive information via requests to unspecified URIs, as demonstrated by pathname, SQL server, e-mail address, and IP address information. | Assigned (20140415) | None (candidate not yet proposed) | View | |
70420 | CVE-2014-3125 | Candidate | Xen 4.4.x, when running on an ARM system, does not properly context switch the CNTKCTL_EL1 register, which allows local guest users to modify the hardware timers and cause a denial of service (crash) via unspecified vectors. | Assigned (20140429) | None (candidate not yet proposed) | View | |
70676 | CVE-2014-3380 | Candidate | Cisco Unified Communications Domain Manager Platform Software 4.4(.3) and earlier allows remote attackers to cause a denial of service (CPU consumption) by sending crafted TCP packets quickly, aka Bug ID CSCuo42063. | Assigned (20140507) | None (candidate not yet proposed) | View | |
70932 | CVE-2014-3636 | Candidate | D-Bus 1.3.0 through 1.6.x before 1.6.24 and 1.8.x before 1.8.8 allows local users to (1) cause a denial of service (prevention of new connections and connection drop) by queuing the maximum number of file descriptors or (2) cause a denial of service (disconnect) via multiple messages that combine to have more than the allowed number of file descriptors for a single sendmsg call. | Assigned (20140514) | None (candidate not yet proposed) | View | |
71188 | CVE-2014-3892 | Candidate | Cross-site scripting (XSS) vulnerability in Nexa Meridian before 2014 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20140527) | None (candidate not yet proposed) | View |
Page 1582 of 20943, showing 5 records out of 104715 total, starting on record 7906, ending on 7910