CVE List

Id CVE No. Status Description Phase Votes Comments Actions
67821  CVE-2014-0412  Candidate  Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.72 and earlier, 5.5.34 and earlier, and 5.6.14 and earlier allows remote authenticated users to affect availability via unknown vectors related to InnoDB.  Assigned (20131212)  None (candidate not yet proposed)    View
68077  CVE-2014-0668  Candidate  Cross-site scripting (XSS) vulnerability in the portal in Cisco Secure Access Control System (ACS) allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCue65949.  Assigned (20140102)  None (candidate not yet proposed)    View
2797  CVE-2000-1230  Candidate  Backdoor in auth.php3 in Phorum 3.0.7 allows remote attackers to access restricted web pages via an HTTP request with the PHP_AUTH_USER parameter set to "boogieman".  Assigned (20050714)  None (candidate not yet proposed)    View
68333  CVE-2014-0924  Candidate  IBM MessageSight 1.x before 1.1.0.0-IBM-IMA-IT01015 does not verify that all of the characters of a password are correct, which makes it easier for remote authenticated users to bypass intended access restrictions by leveraging knowledge of a password substring.  Assigned (20140106)  None (candidate not yet proposed)    View
3053  CVE-2001-0232  Candidate  newsdesk.cgi in News Desk 1.2 allows remote attackers to read arbitrary files via shell metacharacters.  Proposed (20010309)  MODIFY(1) Frech | NOOP(2) Lawler, Ziese  CHANGE> [Frech changed vote from REVIEWING to MODIFY] | Frech> XF:newsdesk-metacharacter-command-execution(8377)  View

Page 19435 of 20943, showing 5 records out of 104715 total, starting on record 97171, ending on 97175

Actions