CVE List

Id CVE No. Status Description Phase Votes Comments Actions
2811  CVE-2000-1244  Candidate  Computer Associates InoculateIT Agent for Exchange Server does not recognize an e-mail virus attachment if the SMTP header is missing the "From" field, which allows remote attackers to bypass virus protection.  Assigned (20071017)  None (candidate not yet proposed)    View
68347  CVE-2014-0938  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140106)  None (candidate not yet proposed)    View
68603  CVE-2014-1308  Candidate  WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-04-01-1.  Assigned (20140108)  None (candidate not yet proposed)    View
68859  CVE-2014-1564  Candidate  Mozilla Firefox before 32.0, Firefox ESR 31.x before 31.1, and Thunderbird 31.x before 31.1 do not properly initialize memory for GIF rendering, which allows remote attackers to obtain sensitive information from process memory via crafted web script that interacts with a CANVAS element associated with a malformed GIF image.  Assigned (20140116)  None (candidate not yet proposed)    View
69115  CVE-2014-1820  Candidate  Cross-site scripting (XSS) vulnerability in Master Data Services (MDS) in Microsoft SQL Server 2012 SP1 and 2014 on 64-bit platforms allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka "SQL Master Data Services XSS Vulnerability."  Assigned (20140129)  None (candidate not yet proposed)    View

Page 19401 of 20943, showing 5 records out of 104715 total, starting on record 97001, ending on 97005

Actions