CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
67321 | CVE-2013-7374 | Candidate | The Ubuntu Date and Time Indicator (aka indicator-datetime) 13.10.0+13.10.x before 13.10.0+13.10.20131023.2-0ubuntu1.1 does not properly restrict access to Evolution, which allows local users to bypass the greeter screen restrictions by clicking the date. | Assigned (20140430) | None (candidate not yet proposed) | View | |
67577 | CVE-2014-0168 | Candidate | Cross-site request forgery (CSRF) vulnerability in Jolokia before 1.2.1 allows remote attackers to hijack the authentication of users for requests that execute MBeans methods via a crafted web page. | Assigned (20131203) | None (candidate not yet proposed) | View | |
67833 | CVE-2014-0424 | Candidate | Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5889, CVE-2013-5902, CVE-2014-0410, CVE-2014-0415, and CVE-2014-0418. | Assigned (20131212) | None (candidate not yet proposed) | View | |
68089 | CVE-2014-0680 | Candidate | Cross-site scripting (XSS) vulnerability in the HTTP control interface in the NAC Web Agent component in Cisco Identity Services Engine (ISE) allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCui15038. | Assigned (20140102) | None (candidate not yet proposed) | View | |
2809 | CVE-2000-1242 | Candidate | The HTTP service in American Power Conversion (APC) PowerChute uses a default username and password, which allows remote attackers to gain system access. | Assigned (20061209) | None (candidate not yet proposed) | View |
Page 19246 of 20943, showing 5 records out of 104715 total, starting on record 96226, ending on 96230