CVE List

Id CVE No. Status Description Phase Votes Comments Actions
67574  CVE-2014-0165  Candidate  WordPress before 3.7.2 and 3.8.x before 3.8.2 allows remote authenticated users to publish posts by leveraging the Contributor role, related to wp-admin/includes/post.php and wp-admin/includes/class-wp-posts-list-table.php.  Assigned (20131203)  None (candidate not yet proposed)    View
67830  CVE-2014-0421  Candidate  Unspecified vulnerability in Oracle Solaris 10, when running on the SPARC64-X Platform, allows local users to affect confidentiality, integrity, and availability via unknown vectors.  Assigned (20131212)  None (candidate not yet proposed)    View
68086  CVE-2014-0677  Candidate  The Label Distribution Protocol (LDP) functionality in Cisco NX-OS allows remote attackers to cause a denial of service (temporary LDP session outage) via LDP discovery traffic containing malformed Hello messages, aka Bug ID CSCul88851.  Assigned (20140102)  None (candidate not yet proposed)    View
2806  CVE-2000-1239  Candidate  The HTTP interface of Tivoli Lightweight Client Framework (LCF) in IBM Tivoli Management Framework 3.7.1 sets http_disable to zero at install time, which allows remote authenticated users to bypass file permissions on Tivoli Endpoint Configuration data files via an unspecified manipulation of log files.  Assigned (20060315)  None (candidate not yet proposed)    View
68342  CVE-2014-0933  Candidate  Cross-site request forgery (CSRF) vulnerability in IBM InfoSphere Information Server Metadata Workbench 8.1 through 9.1 allows remote attackers to hijack the authentication of arbitrary users.  Assigned (20140106)  None (candidate not yet proposed)    View

Page 20138 of 20943, showing 5 records out of 104715 total, starting on record 100686, ending on 100690

Actions