CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
69348 | CVE-2014-2053 | Candidate | getID3() before 1.9.8, as used in ownCloud Server before 5.0.15 and 6.0.x before 6.0.2, allows remote attackers to read arbitrary files, cause a denial of service, or possibly have other impact via an XML External Entity (XXE) attack. | Assigned (20140219) | None (candidate not yet proposed) | View | |
69604 | CVE-2014-2309 | Candidate | The ip6_route_add function in net/ipv6/route.c in the Linux kernel through 3.13.6 does not properly count the addition of routes, which allows remote attackers to cause a denial of service (memory consumption) via a flood of ICMPv6 Router Advertisement packets. | Assigned (20140306) | None (candidate not yet proposed) | View | |
4324 | CVE-2001-1524 | Candidate | Cross-site scripting (XSS) vulnerability in PHP-Nuke 5.3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) uname parameter in user.php, (2) ttitle, letter and file parameters in modules.php, (3) subject, story and storyext parameters in submit.php, (4) upload parameter in admin.php and (5) fname parameter in friend.php. | Assigned (20050714) | None (candidate not yet proposed) | View | |
69860 | CVE-2014-2565 | Candidate | The commandline interface in Blue Coat Content Analysis System (CAS) 1.1 before 1.1.4.2 allows remote administrators to execute arbitrary commands via unspecified vectors, related to "command injection." | Assigned (20140320) | None (candidate not yet proposed) | View | |
70116 | CVE-2014-2821 | Candidate | Microsoft Internet Explorer 8 and 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability." | Assigned (20140410) | None (candidate not yet proposed) | View |
Page 18751 of 20943, showing 5 records out of 104715 total, starting on record 93751, ending on 93755