CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
68086 | CVE-2014-0677 | Candidate | The Label Distribution Protocol (LDP) functionality in Cisco NX-OS allows remote attackers to cause a denial of service (temporary LDP session outage) via LDP discovery traffic containing malformed Hello messages, aka Bug ID CSCul88851. | Assigned (20140102) | None (candidate not yet proposed) | View | |
2806 | CVE-2000-1239 | Candidate | The HTTP interface of Tivoli Lightweight Client Framework (LCF) in IBM Tivoli Management Framework 3.7.1 sets http_disable to zero at install time, which allows remote authenticated users to bypass file permissions on Tivoli Endpoint Configuration data files via an unspecified manipulation of log files. | Assigned (20060315) | None (candidate not yet proposed) | View | |
68342 | CVE-2014-0933 | Candidate | Cross-site request forgery (CSRF) vulnerability in IBM InfoSphere Information Server Metadata Workbench 8.1 through 9.1 allows remote attackers to hijack the authentication of arbitrary users. | Assigned (20140106) | None (candidate not yet proposed) | View | |
68598 | CVE-2014-1303 | Candidate | Heap-based buffer overflow in Apple Safari 7.0.2 allows remote attackers to execute arbitrary code and bypass a sandbox protection mechanism via unspecified vectors, as demonstrated by Liang Chen during a Pwn2Own competition at CanSecWest 2014. | Assigned (20140108) | None (candidate not yet proposed) | View | |
68854 | CVE-2014-1559 | Candidate | Mozilla Firefox before 31.0 and Thunderbird before 31.0 allow remote attackers to cause a denial of service (X.509 certificate parsing outage) via a crafted certificate that does not use UTF-8 character encoding in a required context, a different vulnerability than CVE-2014-1558. | Assigned (20140116) | None (candidate not yet proposed) | View |
Page 19015 of 20943, showing 5 records out of 104715 total, starting on record 95071, ending on 95075