CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
67574 | CVE-2014-0165 | Candidate | WordPress before 3.7.2 and 3.8.x before 3.8.2 allows remote authenticated users to publish posts by leveraging the Contributor role, related to wp-admin/includes/post.php and wp-admin/includes/class-wp-posts-list-table.php. | Assigned (20131203) | None (candidate not yet proposed) | View | |
67830 | CVE-2014-0421 | Candidate | Unspecified vulnerability in Oracle Solaris 10, when running on the SPARC64-X Platform, allows local users to affect confidentiality, integrity, and availability via unknown vectors. | Assigned (20131212) | None (candidate not yet proposed) | View | |
68086 | CVE-2014-0677 | Candidate | The Label Distribution Protocol (LDP) functionality in Cisco NX-OS allows remote attackers to cause a denial of service (temporary LDP session outage) via LDP discovery traffic containing malformed Hello messages, aka Bug ID CSCul88851. | Assigned (20140102) | None (candidate not yet proposed) | View | |
2806 | CVE-2000-1239 | Candidate | The HTTP interface of Tivoli Lightweight Client Framework (LCF) in IBM Tivoli Management Framework 3.7.1 sets http_disable to zero at install time, which allows remote authenticated users to bypass file permissions on Tivoli Endpoint Configuration data files via an unspecified manipulation of log files. | Assigned (20060315) | None (candidate not yet proposed) | View | |
68342 | CVE-2014-0933 | Candidate | Cross-site request forgery (CSRF) vulnerability in IBM InfoSphere Information Server Metadata Workbench 8.1 through 9.1 allows remote attackers to hijack the authentication of arbitrary users. | Assigned (20140106) | None (candidate not yet proposed) | View |
Page 20138 of 20943, showing 5 records out of 104715 total, starting on record 100686, ending on 100690