CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
69358 | CVE-2014-2063 | Candidate | Jenkins before 1.551 and LTS before 1.532.2 allows remote attackers to conduct clickjacking attacks via unspecified vectors. | Assigned (20140219) | None (candidate not yet proposed) | View | |
69614 | CVE-2014-2319 | Candidate | The Encrypt Files feature in ConeXware PowerArchiver before 14.02.05 uses legacy ZIP encryption even if the AES 256-bit selection is chosen, which makes it easier for context-dependent attackers to obtain sensitive information via a known-plaintext attack. | Assigned (20140310) | None (candidate not yet proposed) | View | |
4334 | CVE-2001-1534 | Candidate | mod_usertrack in Apache 1.3.11 through 1.3.20 generates session ID"s using predictable information including host IP address, system time and server process ID, which allows local users to obtain session ID"s and bypass authentication when these session ID"s are used for authentication. | Assigned (20050714) | None (candidate not yet proposed) | View | |
69870 | CVE-2014-2575 | Candidate | Directory traversal vulnerability in the File Manager component in DevExpress ASPxFileManager Control for ASP.NET WebForms and MVC before 13.1.10 and 13.2.x before 13.2.9 allows remote authenticated users to read or write arbitrary files via a .. (dot dot) in the __EVENTARGUMENT parameter. | Assigned (20140321) | None (candidate not yet proposed) | View | |
70126 | CVE-2014-2831 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20140410) | None (candidate not yet proposed) | View |
Page 19523 of 20943, showing 5 records out of 104715 total, starting on record 97611, ending on 97615