CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
68079 | CVE-2014-0670 | Candidate | Cross-site scripting (XSS) vulnerability in the Search and Play interface in Cisco MediaSense allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCum16686. | Assigned (20140102) | None (candidate not yet proposed) | View | |
2799 | CVE-2000-1232 | Candidate | upgrade.php3 in Phorum 3.0.7 could allow remote attackers to modify certain Phorum database tables via an unknown method. | Assigned (20050714) | None (candidate not yet proposed) | View | |
68335 | CVE-2014-0926 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20140106) | None (candidate not yet proposed) | View | |
68591 | CVE-2014-1296 | Candidate | CFNetwork in Apple iOS before 7.1.1, Apple OS X through 10.9.2, and Apple TV before 6.1.1 does not ensure that a Set-Cookie HTTP header is complete before interpreting the header"s value, which allows remote attackers to bypass intended access restrictions by triggering the closing of a TCP connection during transmission of a header, as demonstrated by an HTTPOnly restriction. | Assigned (20140108) | None (candidate not yet proposed) | View | |
68847 | CVE-2014-1552 | Candidate | Mozilla Firefox before 31.0 and Thunderbird before 31.0 do not properly implement the sandbox attribute of the IFRAME element, which allows remote attackers to bypass intended restrictions on same-origin content via a crafted web site in conjunction with a redirect. | Assigned (20140116) | None (candidate not yet proposed) | View |
Page 19599 of 20943, showing 5 records out of 104715 total, starting on record 97991, ending on 97995