CVE List

Id CVE No. Status Description Phase Votes Comments Actions
70164  CVE-2014-2869  Candidate  PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allows remote attackers to obtain sensitive information via requests to unspecified URIs, as demonstrated by pathname, SQL server, e-mail address, and IP address information.  Assigned (20140415)  None (candidate not yet proposed)    View
70420  CVE-2014-3125  Candidate  Xen 4.4.x, when running on an ARM system, does not properly context switch the CNTKCTL_EL1 register, which allows local guest users to modify the hardware timers and cause a denial of service (crash) via unspecified vectors.  Assigned (20140429)  None (candidate not yet proposed)    View
70676  CVE-2014-3380  Candidate  Cisco Unified Communications Domain Manager Platform Software 4.4(.3) and earlier allows remote attackers to cause a denial of service (CPU consumption) by sending crafted TCP packets quickly, aka Bug ID CSCuo42063.  Assigned (20140507)  None (candidate not yet proposed)    View
70932  CVE-2014-3636  Candidate  D-Bus 1.3.0 through 1.6.x before 1.6.24 and 1.8.x before 1.8.8 allows local users to (1) cause a denial of service (prevention of new connections and connection drop) by queuing the maximum number of file descriptors or (2) cause a denial of service (disconnect) via multiple messages that combine to have more than the allowed number of file descriptors for a single sendmsg call.  Assigned (20140514)  None (candidate not yet proposed)    View
71188  CVE-2014-3892  Candidate  Cross-site scripting (XSS) vulnerability in Nexa Meridian before 2014 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20140527)  None (candidate not yet proposed)    View

Page 1582 of 20943, showing 5 records out of 104715 total, starting on record 7906, ending on 7910

Actions