CVE List

Id CVE No. Status Description Phase Votes Comments Actions
67088  CVE-2013-7141  Candidate  Cross-site scripting (XSS) vulnerability in Open-Xchange (OX) AppSuite 7.4.1 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to crafted "<%" tags.  Assigned (20131218)  None (candidate not yet proposed)    View
67344  CVE-2013-7397  Candidate  Async Http Client (aka AHC or async-http-client) before 1.9.0 skips X.509 certificate verification unless both a keyStore location and a trustStore location are explicitly set, which allows man-in-the-middle attackers to spoof HTTPS servers by presenting an arbitrary certificate during use of a typical AHC configuration, as demonstrated by a configuration that does not send client certificates.  Assigned (20140825)  None (candidate not yet proposed)    View
67600  CVE-2014-0191  Candidate  The xmlParserHandlePEReference function in parser.c in libxml2 before 2.9.2, as used in Web Listener in Oracle HTTP Server in Oracle Fusion Middleware 11.1.1.7.0, 12.1.2.0, and 12.1.3.0 and other products, loads external parameter entities regardless of whether entity substitution or validation is enabled, which allows remote attackers to cause a denial of service (resource consumption) via a crafted XML document.  Assigned (20131203)  None (candidate not yet proposed)    View
67856  CVE-2014-0447  Candidate  Unspecified vulnerability in Oracle Solaris 10 and 11.1 allows local users to affect availability via unknown vectors related to Kernel, a different vulnerability than CVE-2013-5876.  Assigned (20131212)  None (candidate not yet proposed)    View
68112  CVE-2014-0703  Candidate  Cisco Wireless LAN Controller (WLC) devices 7.4 before 7.4.110.0 distribute Aironet IOS software with a race condition in the status of the administrative HTTP server, which allows remote attackers to bypass intended access restrictions by connecting to an Aironet access point on which this server had been disabled ineffectively, aka Bug ID CSCuf66202.  Assigned (20140102)  None (candidate not yet proposed)    View

Page 1887 of 20943, showing 5 records out of 104715 total, starting on record 9431, ending on 9435

Actions