CVE List

Id CVE No. Status Description Phase Votes Comments Actions
70885  CVE-2014-3589  Candidate  PIL/IcnsImagePlugin.py in Python Imaging Library (PIL) and Pillow before 2.3.2 and 2.5.x before 2.5.2 allows remote attackers to cause a denial of service via a crafted block size.  Assigned (20140514)  None (candidate not yet proposed)    View
5605  CVE-2002-1221  Entry  BIND 8.x through 8.3.3 allows remote attackers to cause a denial of service (crash) via SIG RR elements with invalid expiry times, which are removed from the internal BIND database and later cause a null dereference.        View
71141  CVE-2014-3845  Candidate  Cross-site request forgery (CSRF) vulnerability in the TinyMCE Color Picker plugin before 1.2 for WordPress allows remote attackers to hijack the authentication of unspecified users for requests that change plugin settings via unknown vectors. NOTE: some of these details are obtained from third party information.  Assigned (20140522)  None (candidate not yet proposed)    View
5861  CVE-2002-1477  Entry  graphs.php in Cacti before 0.6.8 allows remote authenticated Cacti administrators to execute arbitrary commands via shell metacharacters in the title during edit mode.        View
71397  CVE-2014-4101  Candidate  Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-4087, CVE-2014-4095, and CVE-2014-4096.  Assigned (20140612)  None (candidate not yet proposed)    View

Page 18786 of 20943, showing 5 records out of 104715 total, starting on record 93926, ending on 93930

Actions