CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69875  CVE-2014-2580  Candidate  The netback driver in Xen, when using certain Linux versions that do not allow sleeping in softirq context, allows local guest administrators to cause a denial of service ("scheduling while atomic" error and host crash) via a malformed packet, which causes a mutex to be taken when trying to disable the interface.  Assigned (20140321)  None (candidate not yet proposed)    View
4595  CVE-2002-0203  Candidate  ttawebtop.cgi in Tarantella Enterprise 3.20 on SPARC Solaris and Linux, and 3.1x and 3.0x including 3.11.903, allows remote attackers to view directory contents via an empty pg parameter.  Proposed (20020502)  ACCEPT(2) Cole, Green | NOOP(2) Foat, Wall    View
70131  CVE-2014-2836  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140410)  None (candidate not yet proposed)    View
4851  CVE-2002-0459  Candidate  Cross-site scripting vulnerability in Board-TNK 1.3.1 and earlier allows remote attackers to execute arbitrary Javascript via the WEB parameter.  Proposed (20020611)  ACCEPT(4) Baker, Cole, Frech, Green | NOOP(3) Cox, Foat, Wall    View
70387  CVE-2014-3092  Candidate  IBM Jazz Team Server, as used in Rational Collaborative Lifecycle Management; Rational Quality Manager 3.x before 3.0.1.6 iFix 3, 4.x before 4.0.7, and 5.x before 5.0.1; and other Rational products, does not set the secure flag for the session cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session.  Assigned (20140429)  None (candidate not yet proposed)    View

Page 19908 of 20943, showing 5 records out of 104715 total, starting on record 99536, ending on 99540

Actions