CVE List

Id CVE No. Status Description Phase Votes Comments Actions
4358  CVE-2001-1558  Candidate  Unknown vulnerability in IP defragmenter (frag2) in Snort before 1.8.3 allows attackers to cause a denial of service (crash).  Assigned (20050714)  None (candidate not yet proposed)    View
69894  CVE-2014-2599  Candidate  The HVMOP_set_mem_access HVM control operations in Xen 4.1.x for 32-bit and 4.1.x through 4.4.x for 64-bit allow local guest administrators to cause a denial of service (CPU consumption) by leveraging access to certain service domains for HVM guests and a large input.  Assigned (20140324)  None (candidate not yet proposed)    View
70150  CVE-2014-2855  Candidate  The check_secret function in authenticate.c in rsync 3.1.0 and earlier allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a user name which does not exist in the secrets file.  Assigned (20140415)  None (candidate not yet proposed)    View
70406  CVE-2014-3111  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in FOG 0.27 through 0.32 allow remote authenticated users to inject arbitrary web script or HTML via the (1) Printer Model field to the Printer Management page, (2) Image Name field to the Image Management page, (3) Storage Group Name field to the Storage Management page, (4) Username field to the User Cleanup FOG Configuration page, or (5) Directory Path field to the Directory Cleaner FOG Configuration page.  Assigned (20140429)  None (candidate not yet proposed)    View
70662  CVE-2014-3366  Candidate  SQL injection vulnerability in the administrative web interface in Cisco Unified Communications Manager allows remote authenticated users to execute arbitrary SQL commands via a crafted response, aka Bug ID CSCup88089.  Assigned (20140507)  None (candidate not yet proposed)    View

Page 1628 of 20943, showing 5 records out of 104715 total, starting on record 8136, ending on 8140

Actions