CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69867  CVE-2014-2572  Candidate  mod/assign/externallib.php in Moodle 2.6.x before 2.6.2 does not properly handle assignment web-service parameters, which might allow remote authenticated users to modify grade metadata via unspecified vectors.  Assigned (20140320)  None (candidate not yet proposed)    View
4587  CVE-2002-0195  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20020420)  None (candidate not yet proposed)    View
70123  CVE-2014-2828  Candidate  The V3 API in OpenStack Identity (Keystone) 2013.1 before 2013.2.4 and icehouse before icehouse-rc2 allows remote attackers to cause a denial of service (CPU consumption) via a large number of the same authentication method in a request, aka "authentication chaining."  Assigned (20140410)  None (candidate not yet proposed)    View
70379  CVE-2014-3084  Candidate  IBM Maximo Asset Management 6.1 through 6.5, 7.1 through 7.1.1.13, and 7.5 through 7.5.0.6; Maximo Asset Management 7.5.0 through 7.5.0.3 and 7.5.1 through 7.5.1.2 for SmartCloud Control Desk; and Maximo Asset Management 6.2.8, 7.1, and 7.2 for Tivoli IT Asset Management for IT and certain other products allow remote authenticated users to bypass intended write-access restrictions on calendar entries via unspecified vectors.  Assigned (20140429)  None (candidate not yet proposed)    View
5099  CVE-2002-0709  Candidate  SQL injection vulnerabilities in the Web Reports Server for SurfControl SuperScout WebFilter allow remote attackers to execute arbitrary SQL queries via the RunReport option to SimpleBar.dll, and possibly other DLLs.  Modified (20050610)  ACCEPT(1) Baker | NOOP(4) Cole, Cox, Green, Wall    View

Page 18668 of 20943, showing 5 records out of 104715 total, starting on record 93336, ending on 93340

Actions