CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69106  CVE-2014-1811  Candidate  The TCP implementation in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows remote attackers to cause a denial of service (non-paged pool memory consumption and system hang) via malformed data in the Options field of a TCP header, aka "TCP Denial of Service Vulnerability."  Assigned (20140129)  None (candidate not yet proposed)    View
69362  CVE-2014-2067  Candidate  Cross-site scripting (XSS) vulnerability in java/hudson/model/Cause.java in Jenkins before 1.551 and LTS before 1.532.2 allows remote authenticated users to inject arbitrary web script or HTML via a "remote cause note."  Assigned (20140219)  None (candidate not yet proposed)    View
69618  CVE-2014-2323  Candidate  SQL injection vulnerability in mod_mysql_vhost.c in lighttpd before 1.4.35 allows remote attackers to execute arbitrary SQL commands via the host name, related to request_check_hostname.  Assigned (20140312)  None (candidate not yet proposed)    View
4338  CVE-2001-1538  Candidate  SpeedXess HA-120 DSL router has a default administrative password of "speedxess", which allows remote attackers to gain access.  Assigned (20050714)  None (candidate not yet proposed)    View
69874  CVE-2014-2579  Candidate  Multiple cross-site request forgery (CSRF) vulnerabilities in XCloner Standalone 3.5 and earlier allow remote attackers to hijack the authentication of administrators for requests that (1) change the administrator password via the config task to index2.php or (2) when the enable_db_backup and sql_mem options are enabled, access the database backup functionality via the dbbackup_comp parameter in the generate action to index2.php. NOTE: vector 2 might be a duplicate of CVE-2014-2340, which is for the XCloner Wordpress plugin. NOTE: remote attackers can leverage CVE-2014-2996 with vector 2 to execute arbitrary commands.  Assigned (20140321)  None (candidate not yet proposed)    View

Page 19831 of 20943, showing 5 records out of 104715 total, starting on record 99151, ending on 99155

Actions