CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
67082 | CVE-2013-7135 | Candidate | The Proc::Daemon module 0.14 for Perl uses world-writable permissions for a file that stores a process ID, which allows local users to have an unspecified impact by modifying this file. | Assigned (20131217) | None (candidate not yet proposed) | View | |
67338 | CVE-2013-7391 | Candidate | The Entity API module 7.x-1.x before 7.x-1.2 for Drupal, when using the (a) Views field or (b) area plugins, allows remote attackers to read restricted entities via the (1) field, (2) header, or (3) footer of a View. NOTE: this identifier was SPLIT from CVE-2013-4273 per ADT5 due to different researcher organizations. | Assigned (20140719) | None (candidate not yet proposed) | View | |
67594 | CVE-2014-0185 | Candidate | sapi/fpm/fpm/fpm_unix.c in the FastCGI Process Manager (FPM) in PHP before 5.4.28 and 5.5.x before 5.5.12 uses 0666 permissions for the UNIX socket, which allows local users to gain privileges via a crafted FastCGI client. | Assigned (20131203) | None (candidate not yet proposed) | View | |
67850 | CVE-2014-0441 | Candidate | Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.52 and 8.53 allows remote attackers to affect availability via unknown vectors related to Integration Broker. | Assigned (20131212) | None (candidate not yet proposed) | View | |
68106 | CVE-2014-0697 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20140102) | None (candidate not yet proposed) | View |
Page 1934 of 20943, showing 5 records out of 104715 total, starting on record 9666, ending on 9670