CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
67334 | CVE-2013-7387 | Candidate | Session fixation vulnerability in DataLife Engine (DLE) 9.7 and earlier allows remote attackers to hijack web sessions via the PHPSESSID cookie. | Assigned (20140602) | None (candidate not yet proposed) | View | |
67590 | CVE-2014-0181 | Candidate | The Netlink implementation in the Linux kernel through 3.14.1 does not provide a mechanism for authorizing socket operations based on the opener of a socket, which allows local users to bypass intended access restrictions and modify network configurations by using a Netlink socket for the (1) stdout or (2) stderr of a setuid program. | Assigned (20131203) | None (candidate not yet proposed) | View | |
67846 | CVE-2014-0437 | Candidate | Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.72 and earlier, 5.5.34 and earlier, and 5.6.14 and earlier allows remote authenticated users to affect availability via unknown vectors related to Optimizer. | Assigned (20131212) | None (candidate not yet proposed) | View | |
68102 | CVE-2014-0693 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20140102) | None (candidate not yet proposed) | View | |
68358 | CVE-2014-0949 | Candidate | IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0 through 7.0.0.2 CF28, and 8.0 before 8.0.0.1 CF12 allows remote attackers to cause a denial of service (resource consumption and daemon crash) via a crafted web request. | Assigned (20140106) | None (candidate not yet proposed) | View |
Page 1626 of 20943, showing 5 records out of 104715 total, starting on record 8126, ending on 8130