CVE List

Id CVE No. Status Description Phase Votes Comments Actions
70902  CVE-2014-3606  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140514)  None (candidate not yet proposed)    View
71158  CVE-2014-3862  Candidate  CDA.xsl in HL7 C-CDA 1.1 and earlier allows remote attackers to discover potentially sensitive URLs via a crafted reference element that triggers creation of an IMG element with an arbitrary URL in its SRC attribute, leading to information disclosure in a Referer log.  Assigned (20140525)  None (candidate not yet proposed)    View
5878  CVE-2002-1494  Entry  Cross-site scripting (XSS) vulnerabilities in Aestiva HTML/OS allows remote attackers to insert arbitrary HTML or script by inserting the script after a trailing / character, which inserts the script into the resulting error message.        View
71414  CVE-2014-4118  Candidate  XML Core Services (aka MSXML) 3.0 in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows remote attackers to execute arbitrary code or cause a denial of service (system-state corruption) via crafted XML content, aka "MSXML Remote Code Execution Vulnerability."  Assigned (20140612)  None (candidate not yet proposed)    View
6134  CVE-2002-1752  Candidate  csChatRBox.cgi in CGIScript.net csChat-R-Box allows remote attackers to execute arbitrary Perl code via the setup parameter, which is processed by the Perl eval function.  Assigned (20050621)  None (candidate not yet proposed)    View

Page 20149 of 20943, showing 5 records out of 104715 total, starting on record 100741, ending on 100745

Actions