CVE List

Id CVE No. Status Description Phase Votes Comments Actions
67067  CVE-2013-7120  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20131216)  None (candidate not yet proposed)    View
67323  CVE-2013-7376  Candidate  Multiple cross-site request forgery (CSRF) vulnerabilities in OpenX 2.8.10, possibly before revision 82710, allow remote attackers to hijack the authentication of administrators, as demonstrated by requests that conduct directory traversal attacks via the group parameter to (1) plugin-preferences.php or (2) plugin-settings.php in www/admin, a different vulnerability than CVE-2013-3514.  Assigned (20140514)  None (candidate not yet proposed)    View
67579  CVE-2014-0170  Candidate  Teiid before 8.4.3 and before 8.7 and Red Hat JBoss Data Virtualization 6.0.0 before patch 3 allows remote attackers to read arbitrary files via a crafted request to a REST endpoint, related to an XML External Entity (XXE) issue.  Assigned (20131203)  None (candidate not yet proposed)    View
67835  CVE-2014-0426  Candidate  Unspecified vulnerability in the Oracle Containers for J2EE component in Oracle Fusion Middleware 10.1.3.5 allows remote attackers to affect integrity via vectors related to HTTP Request Handling, a different vulnerability than CVE-2014-0413.  Assigned (20131212)  None (candidate not yet proposed)    View
68091  CVE-2014-0682  Candidate  Cisco WebEx Meetings Server allows remote authenticated users to bypass authorization checks and (1) join arbitrary meetings, or (2) terminate a meeting without having a host role, via a crafted URL, aka Bug ID CSCuj42346.  Assigned (20140102)  None (candidate not yet proposed)    View

Page 19400 of 20943, showing 5 records out of 104715 total, starting on record 96996, ending on 97000

Actions