CVE List

Id CVE No. Status Description Phase Votes Comments Actions
67334  CVE-2013-7387  Candidate  Session fixation vulnerability in DataLife Engine (DLE) 9.7 and earlier allows remote attackers to hijack web sessions via the PHPSESSID cookie.  Assigned (20140602)  None (candidate not yet proposed)    View
67590  CVE-2014-0181  Candidate  The Netlink implementation in the Linux kernel through 3.14.1 does not provide a mechanism for authorizing socket operations based on the opener of a socket, which allows local users to bypass intended access restrictions and modify network configurations by using a Netlink socket for the (1) stdout or (2) stderr of a setuid program.  Assigned (20131203)  None (candidate not yet proposed)    View
67846  CVE-2014-0437  Candidate  Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.72 and earlier, 5.5.34 and earlier, and 5.6.14 and earlier allows remote authenticated users to affect availability via unknown vectors related to Optimizer.  Assigned (20131212)  None (candidate not yet proposed)    View
68102  CVE-2014-0693  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140102)  None (candidate not yet proposed)    View
68358  CVE-2014-0949  Candidate  IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0 through 7.0.0.2 CF28, and 8.0 before 8.0.0.1 CF12 allows remote attackers to cause a denial of service (resource consumption and daemon crash) via a crafted web request.  Assigned (20140106)  None (candidate not yet proposed)    View

Page 1626 of 20943, showing 5 records out of 104715 total, starting on record 8126, ending on 8130

Actions