CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69358  CVE-2014-2063  Candidate  Jenkins before 1.551 and LTS before 1.532.2 allows remote attackers to conduct clickjacking attacks via unspecified vectors.  Assigned (20140219)  None (candidate not yet proposed)    View
69614  CVE-2014-2319  Candidate  The Encrypt Files feature in ConeXware PowerArchiver before 14.02.05 uses legacy ZIP encryption even if the AES 256-bit selection is chosen, which makes it easier for context-dependent attackers to obtain sensitive information via a known-plaintext attack.  Assigned (20140310)  None (candidate not yet proposed)    View
4334  CVE-2001-1534  Candidate  mod_usertrack in Apache 1.3.11 through 1.3.20 generates session ID"s using predictable information including host IP address, system time and server process ID, which allows local users to obtain session ID"s and bypass authentication when these session ID"s are used for authentication.  Assigned (20050714)  None (candidate not yet proposed)    View
69870  CVE-2014-2575  Candidate  Directory traversal vulnerability in the File Manager component in DevExpress ASPxFileManager Control for ASP.NET WebForms and MVC before 13.1.10 and 13.2.x before 13.2.9 allows remote authenticated users to read or write arbitrary files via a .. (dot dot) in the __EVENTARGUMENT parameter.  Assigned (20140321)  None (candidate not yet proposed)    View
70126  CVE-2014-2831  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140410)  None (candidate not yet proposed)    View

Page 19523 of 20943, showing 5 records out of 104715 total, starting on record 97611, ending on 97615

Actions