CVE List

Id CVE No. Status Description Phase Votes Comments Actions
66799  CVE-2013-6852  Candidate  Cross-site request forgery (CSRF) vulnerability in html/json.html on HP 2620 switches allows remote attackers to hijack the authentication of administrators for requests that change an administrative password via the setPassword method.  Assigned (20131121)  None (candidate not yet proposed)    View
67055  CVE-2013-7108  Candidate  Multiple off-by-one errors in Nagios Core 3.5.1, 4.0.2, and earlier, and Icinga before 1.8.5, 1.9 before 1.9.4, and 1.10 before 1.10.2 allow remote authenticated users to obtain sensitive information from process memory or cause a denial of service (crash) via a long string in the last key value in the variable list to the process_cgivars function in (1) avail.c, (2) cmd.c, (3) config.c, (4) extinfo.c, (5) histogram.c, (6) notifications.c, (7) outages.c, (8) status.c, (9) statusmap.c, (10) summary.c, and (11) trends.c in cgi/, which triggers a heap-based buffer over-read.  Assigned (20131215)  None (candidate not yet proposed)    View
67311  CVE-2013-7364  Candidate  An unspecified J2EE core service in the J2EE Engine in SAP NetWeaver does not properly restrict access, which allows remote attackers to read and write to arbitrary files via unknown vectors.  Assigned (20140410)  None (candidate not yet proposed)    View
67567  CVE-2014-0158  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20131203)  None (candidate not yet proposed)    View
67823  CVE-2014-0414  Candidate  Unspecified vulnerability in the Oracle Containers for J2EE component in Oracle Fusion Middleware 10.1.3.5 allows remote attackers to affect confidentiality via vectors related to HTTP Request Handling.  Assigned (20131212)  None (candidate not yet proposed)    View

Page 19598 of 20943, showing 5 records out of 104715 total, starting on record 97986, ending on 97990

Actions