CVE List

Id CVE No. Status Description Phase Votes Comments Actions
68838  CVE-2014-1543  Candidate  Multiple heap-based buffer overflows in the navigator.getGamepads function in the Gamepad API in Mozilla Firefox before 30.0 allow remote attackers to execute arbitrary code by using non-contiguous axes with a (1) physical or (2) virtual Gamepad device.  Assigned (20140116)  None (candidate not yet proposed)    View
69094  CVE-2014-1799  Candidate  Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-0282, CVE-2014-1775, CVE-2014-1779, CVE-2014-1803, and CVE-2014-2757.  Assigned (20140129)  None (candidate not yet proposed)    View
69350  CVE-2014-2055  Candidate  SabreDAV before 1.7.11, as used in ownCloud Server before 5.0.15 and 6.0.x before 6.0.2, allows remote attackers to read arbitrary files, cause a denial of service, or possibly have other impact via an XML External Entity (XXE) attack.  Assigned (20140219)  None (candidate not yet proposed)    View
69606  CVE-2014-2311  Candidate  SQL injection vulnerability in modx.class.php in MODX Revolution 2.0.0 before 2.2.13 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.  Assigned (20140306)  None (candidate not yet proposed)    View
4326  CVE-2001-1526  Candidate  Cross-site scripting (XSS) vulnerability in the comments action in index.php in easyNews 1.5 and earlier allows remote attackers to inject arbitrary web script or HTML via the zeit parameter.  Assigned (20050714)  None (candidate not yet proposed)    View

Page 18905 of 20943, showing 5 records out of 104715 total, starting on record 94521, ending on 94525

Actions