CVE List

Id CVE No. Status Description Phase Votes Comments Actions
68086  CVE-2014-0677  Candidate  The Label Distribution Protocol (LDP) functionality in Cisco NX-OS allows remote attackers to cause a denial of service (temporary LDP session outage) via LDP discovery traffic containing malformed Hello messages, aka Bug ID CSCul88851.  Assigned (20140102)  None (candidate not yet proposed)    View
2806  CVE-2000-1239  Candidate  The HTTP interface of Tivoli Lightweight Client Framework (LCF) in IBM Tivoli Management Framework 3.7.1 sets http_disable to zero at install time, which allows remote authenticated users to bypass file permissions on Tivoli Endpoint Configuration data files via an unspecified manipulation of log files.  Assigned (20060315)  None (candidate not yet proposed)    View
68342  CVE-2014-0933  Candidate  Cross-site request forgery (CSRF) vulnerability in IBM InfoSphere Information Server Metadata Workbench 8.1 through 9.1 allows remote attackers to hijack the authentication of arbitrary users.  Assigned (20140106)  None (candidate not yet proposed)    View
68598  CVE-2014-1303  Candidate  Heap-based buffer overflow in Apple Safari 7.0.2 allows remote attackers to execute arbitrary code and bypass a sandbox protection mechanism via unspecified vectors, as demonstrated by Liang Chen during a Pwn2Own competition at CanSecWest 2014.  Assigned (20140108)  None (candidate not yet proposed)    View
68854  CVE-2014-1559  Candidate  Mozilla Firefox before 31.0 and Thunderbird before 31.0 allow remote attackers to cause a denial of service (X.509 certificate parsing outage) via a crafted certificate that does not use UTF-8 character encoding in a required context, a different vulnerability than CVE-2014-1558.  Assigned (20140116)  None (candidate not yet proposed)    View

Page 19015 of 20943, showing 5 records out of 104715 total, starting on record 95071, ending on 95075

Actions