CVE List

Id CVE No. Status Description Phase Votes Comments Actions
67096  CVE-2013-7149  Candidate  SQL injection vulnerability in www/delivery/axmlrpc.php (aka the XML-RPC delivery invocation script) in Revive Adserver before 3.0.2, and OpenX Source 2.8.11 and earlier, allows remote attackers to execute arbitrary SQL commands via the what parameter to an XML-RPC method.  Assigned (20131219)  None (candidate not yet proposed)    View
67352  CVE-2013-7405  Candidate  The Ad Hoc Reporting feature in GE Healthcare Centricity DMS 4.2 has a password of Never!Mind for the Administrator user, which has unspecified impact and attack vectors. NOTE: it is not clear whether this password is default, hardcoded, or dependent on another system or product that requires a fixed value.  Assigned (20140929)  None (candidate not yet proposed)    View
67608  CVE-2014-0199  Candidate  The setup script in ovirt-engine-reports, as used in the Red Hat Enterprise Virtualization reports (rhevm-reports) package before 3.3.3, stores the reports database password in cleartext, which allows local users to obtain sensitive information by reading an unspecified file.  Assigned (20131203)  None (candidate not yet proposed)    View
67864  CVE-2014-0455  Candidate  Unspecified vulnerability in Oracle Java SE 7u51 and 8, and Java SE Embedded 7u51, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries, a different vulnerability than CVE-2014-0432 and CVE-2014-2402.  Assigned (20131212)  None (candidate not yet proposed)    View
68120  CVE-2014-0711  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140102)  None (candidate not yet proposed)    View

Page 1887 of 20943, showing 5 records out of 104715 total, starting on record 9431, ending on 9435

Actions