CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69105  CVE-2014-1810  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140129)  None (candidate not yet proposed)    View
69361  CVE-2014-2066  Candidate  Session fixation vulnerability in Jenkins before 1.551 and LTS before 1.532.2 allows remote attackers to hijack web sessions via vectors involving the "override" of Jenkins cookies.  Assigned (20140219)  None (candidate not yet proposed)    View
69617  CVE-2014-2322  Candidate  lib/string_utf_support.rb in the Arabic Prawn 0.0.1 gem for Ruby allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) downloaded_file or (2) url variable.  Assigned (20140312)  None (candidate not yet proposed)    View
4337  CVE-2001-1537  Candidate  The default "basic" security setting" in config.php for TWIG webmail 2.7.4 and earlier stores cleartext usernames and passwords in cookies, which could allow attackers to obtain authentication information and gain privileges.  Assigned (20050714)  None (candidate not yet proposed)    View
69873  CVE-2014-2578  Candidate  Cross-site scripting (XSS) vulnerability in Splunk Web in Splunk before 5.0.8 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20140321)  None (candidate not yet proposed)    View

Page 19754 of 20943, showing 5 records out of 104715 total, starting on record 98766, ending on 98770

Actions