CVE List

Id CVE No. Status Description Phase Votes Comments Actions
68361  CVE-2014-0952  Candidate  Cross-site scripting (XSS) vulnerability in boot_config.jsp in IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF28, 7.0 through 7.0.0.2 CF28, and 8.0 before 8.0.0.1 CF12 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20140106)  None (candidate not yet proposed)    View
68617  CVE-2014-1322  Candidate  The kernel in Apple OS X through 10.9.2 places a kernel pointer into an XNU object data structure accessible from user space, which makes it easier for local users to bypass the ASLR protection mechanism by reading an unspecified attribute of the object.  Assigned (20140108)  None (candidate not yet proposed)    View
68873  CVE-2014-1578  Candidate  The get_tile function in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 allows remote attackers to cause a denial of service (out-of-bounds write and application crash) or possibly execute arbitrary code via WebM frames with invalid tile sizes that are improperly handled in buffering operations during video playback.  Assigned (20140116)  None (candidate not yet proposed)    View
69129  CVE-2014-1834  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140130)  None (candidate not yet proposed)    View
69385  CVE-2014-2090  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in ilias.php in ILIAS 4.4.1 allow remote authenticated users to inject arbitrary web script or HTML via the (1) tar, (2) tar_val, or (3) title parameter.  Assigned (20140224)  None (candidate not yet proposed)    View

Page 1858 of 20943, showing 5 records out of 104715 total, starting on record 9286, ending on 9290

Actions