CVE List

Id CVE No. Status Description Phase Votes Comments Actions
68342  CVE-2014-0933  Candidate  Cross-site request forgery (CSRF) vulnerability in IBM InfoSphere Information Server Metadata Workbench 8.1 through 9.1 allows remote attackers to hijack the authentication of arbitrary users.  Assigned (20140106)  None (candidate not yet proposed)    View
68598  CVE-2014-1303  Candidate  Heap-based buffer overflow in Apple Safari 7.0.2 allows remote attackers to execute arbitrary code and bypass a sandbox protection mechanism via unspecified vectors, as demonstrated by Liang Chen during a Pwn2Own competition at CanSecWest 2014.  Assigned (20140108)  None (candidate not yet proposed)    View
68854  CVE-2014-1559  Candidate  Mozilla Firefox before 31.0 and Thunderbird before 31.0 allow remote attackers to cause a denial of service (X.509 certificate parsing outage) via a crafted certificate that does not use UTF-8 character encoding in a required context, a different vulnerability than CVE-2014-1558.  Assigned (20140116)  None (candidate not yet proposed)    View
3574  CVE-2001-0767  Candidate  Directory traversal vulnerability in GuildFTPd 0.9.7 allows attackers to list or read arbitrary files and directories via a .. in (1) LS or (2) GET.  Proposed (20011012)  ACCEPT(3) Armstrong, Cole, Foat | NOOP(2) Christey, Wall | REJECT(1) Frech  Frech> DUPE CVE-2000-0640 | Christey> Email ack received from guildftpd@nitrolic.com on 3/8/2002  View
69110  CVE-2014-1815  Candidate  Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, as exploited in the wild in May 2014, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-0310.  Assigned (20140129)  None (candidate not yet proposed)    View

Page 19541 of 20943, showing 5 records out of 104715 total, starting on record 97701, ending on 97705

Actions