CVE List

Id CVE No. Status Description Phase Votes Comments Actions
76013  CVE-2014-8712  Candidate  The build_expert_data function in epan/dissectors/packet-ncp2222.inc in the NCP dissector in Wireshark 1.10.x before 1.10.11 and 1.12.x before 1.12.2 does not properly initialize a data structure, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.  Assigned (20141109)  None (candidate not yet proposed)    View
10733  CVE-2004-2307  Candidate  Microsoft Internet Explorer 6.0.2600 on Windows XP allows remote attackers to cause a denial of service (browser crash) via a shell: URI with double backslashes (\) in an HTML tag such as IFRAME or A.  Assigned (20050816)  None (candidate not yet proposed)    View
76269  CVE-2014-8968  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141118)  None (candidate not yet proposed)    View
10989  CVE-2004-2563  Candidate  Serena TeamTrack 6.1.1 allows remote attackers to obtain sensitive information such as user names, versions, and database information, and conduct cross-site scripting (XSS) attacks, via a direct request to tmtrack.dll with modified LoginPage and Template parameters.  Assigned (20051122)  None (candidate not yet proposed)    View
76525  CVE-2014-9224  Candidate  Cross-site scripting (XSS) vulnerability in the ajaxswing webui in the Management Console server in the management server in Symantec Critical System Protection (SCSP) 5.2.9 through MP6 and Symantec Data Center Security: Server Advanced (SDCS:SA) 6.0.x through 6.0 MP1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20141203)  None (candidate not yet proposed)    View

Page 19065 of 20943, showing 5 records out of 104715 total, starting on record 95321, ending on 95325

Actions