CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69363  CVE-2014-2068  Candidate  The doIndex function in hudson/util/RemotingDiagnostics.java in CloudBees Jenkins before 1.551 and LTS before 1.532.2 allows remote authenticated users with the ADMINISTER permission to obtain sensitive information via vectors related to heapDump.  Assigned (20140219)  None (candidate not yet proposed)    View
69619  CVE-2014-2324  Candidate  Multiple directory traversal vulnerabilities in (1) mod_evhost and (2) mod_simple_vhost in lighttpd before 1.4.35 allow remote attackers to read arbitrary files via a .. (dot dot) in the host name, related to request_check_hostname.  Assigned (20140312)  None (candidate not yet proposed)    View
4339  CVE-2001-1539  Candidate  Stack consumption vulnerability in Internet Explorer The JavaScript settimeout function in Internet Explorer allows remote attackers to cause a denial of service (crash) via the JavaScript settimeout function. NOTE: the vendor could not reproduce the problem.  Assigned (20050714)  None (candidate not yet proposed)    View
69875  CVE-2014-2580  Candidate  The netback driver in Xen, when using certain Linux versions that do not allow sleeping in softirq context, allows local guest administrators to cause a denial of service ("scheduling while atomic" error and host crash) via a malformed packet, which causes a mutex to be taken when trying to disable the interface.  Assigned (20140321)  None (candidate not yet proposed)    View
70131  CVE-2014-2836  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140410)  None (candidate not yet proposed)    View

Page 18785 of 20943, showing 5 records out of 104715 total, starting on record 93921, ending on 93925

Actions