CVE List

Id CVE No. Status Description Phase Votes Comments Actions
70117  CVE-2014-2822  Candidate  Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-2810, CVE-2014-2811, CVE-2014-2823, and CVE-2014-4057.  Assigned (20140410)  None (candidate not yet proposed)    View
70373  CVE-2014-3078  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140429)  None (candidate not yet proposed)    View
70629  CVE-2014-3333  Candidate  The server in Cisco Unity Connection 9.1(1) and 9.1(2) allows remote authenticated users to obtain privileged access by conducting an "HTTP Intercept" attack and leveraging the ability to read files within the context of the web-server user account, aka Bug ID CSCup41014.  Assigned (20140507)  None (candidate not yet proposed)    View
70885  CVE-2014-3589  Candidate  PIL/IcnsImagePlugin.py in Python Imaging Library (PIL) and Pillow before 2.3.2 and 2.5.x before 2.5.2 allows remote attackers to cause a denial of service via a crafted block size.  Assigned (20140514)  None (candidate not yet proposed)    View
71141  CVE-2014-3845  Candidate  Cross-site request forgery (CSRF) vulnerability in the TinyMCE Color Picker plugin before 1.2 for WordPress allows remote attackers to hijack the authentication of unspecified users for requests that change plugin settings via unknown vectors. NOTE: some of these details are obtained from third party information.  Assigned (20140522)  None (candidate not yet proposed)    View

Page 18829 of 20943, showing 5 records out of 104715 total, starting on record 94141, ending on 94145

Actions