CVE List

Id CVE No. Status Description Phase Votes Comments Actions
68598  CVE-2014-1303  Candidate  Heap-based buffer overflow in Apple Safari 7.0.2 allows remote attackers to execute arbitrary code and bypass a sandbox protection mechanism via unspecified vectors, as demonstrated by Liang Chen during a Pwn2Own competition at CanSecWest 2014.  Assigned (20140108)  None (candidate not yet proposed)    View
68854  CVE-2014-1559  Candidate  Mozilla Firefox before 31.0 and Thunderbird before 31.0 allow remote attackers to cause a denial of service (X.509 certificate parsing outage) via a crafted certificate that does not use UTF-8 character encoding in a required context, a different vulnerability than CVE-2014-1558.  Assigned (20140116)  None (candidate not yet proposed)    View
69110  CVE-2014-1815  Candidate  Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, as exploited in the wild in May 2014, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-0310.  Assigned (20140129)  None (candidate not yet proposed)    View
69366  CVE-2014-2071  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140219)  None (candidate not yet proposed)    View
69622  CVE-2014-2327  Candidate  Cross-site request forgery (CSRF) vulnerability in Cacti 0.8.7g, 0.8.8b, and earlier allows remote attackers to hijack the authentication of users for unspecified commands, as demonstrated by requests that (1) modify binary files, (2) modify configurations, or (3) add arbitrary users.  Assigned (20140312)  None (candidate not yet proposed)    View

Page 20139 of 20943, showing 5 records out of 104715 total, starting on record 100691, ending on 100695

Actions