CVE List

Id CVE No. Status Description Phase Votes Comments Actions
67558  CVE-2014-0149  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Red Hat JBoss Web Framework Kit 2.5.0 allow remote attackers to inject arbitrary web script or HTML via a (1) parameter or (2) id name.  Assigned (20131203)  None (candidate not yet proposed)    View
67814  CVE-2014-0405  Candidate  Unspecified vulnerability in the Oracle VM VirtualBox component in Oracle Virtualization VirtualBox prior to 3.2.20, 4.0.22, 4.1.30, 4.2.20, and 4.3.4 allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Core, a different vulnerability than CVE-2014-0407.  Assigned (20131212)  None (candidate not yet proposed)    View
68070  CVE-2014-0661  Candidate  The System Status Collection Daemon (SSCD) in Cisco TelePresence System 500-37, 1000, 1300-65, and 3xxx before 1.10.2(42), and 500-32, 1300-47, TX1310 65, and TX9xxx before 6.0.4(11), allows remote attackers to execute arbitrary commands or cause a denial of service (stack memory corruption) via a crafted XML-RPC message, aka Bug ID CSCui32796.  Assigned (20140102)  None (candidate not yet proposed)    View
2790  CVE-2000-1223  Candidate  quikstore.cgi in Quikstore Shopping Cart allows remote attackers to execute arbitrary commands via shell metacharacters in the URL portion of an HTTP GET request.  Assigned (20050421)  None (candidate not yet proposed)    View
68326  CVE-2014-0917  Candidate  Cross-site scripting (XSS) vulnerability in IBM Eclipse Help System (IEHS) in IBM WebSphere Portal 6.1.0 through 6.1.0.6 CF27, 6.1.5 through 6.1.5.3 CF27, 7.0 through 7.0.0.2 CF27, and 8.0 before 8.0.0.1 CF06 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.  Assigned (20140106)  None (candidate not yet proposed)    View

Page 18878 of 20943, showing 5 records out of 104715 total, starting on record 94386, ending on 94390

Actions