CVE List

Id CVE No. Status Description Phase Votes Comments Actions
67830  CVE-2014-0421  Candidate  Unspecified vulnerability in Oracle Solaris 10, when running on the SPARC64-X Platform, allows local users to affect confidentiality, integrity, and availability via unknown vectors.  Assigned (20131212)  None (candidate not yet proposed)    View
68086  CVE-2014-0677  Candidate  The Label Distribution Protocol (LDP) functionality in Cisco NX-OS allows remote attackers to cause a denial of service (temporary LDP session outage) via LDP discovery traffic containing malformed Hello messages, aka Bug ID CSCul88851.  Assigned (20140102)  None (candidate not yet proposed)    View
2806  CVE-2000-1239  Candidate  The HTTP interface of Tivoli Lightweight Client Framework (LCF) in IBM Tivoli Management Framework 3.7.1 sets http_disable to zero at install time, which allows remote authenticated users to bypass file permissions on Tivoli Endpoint Configuration data files via an unspecified manipulation of log files.  Assigned (20060315)  None (candidate not yet proposed)    View
68342  CVE-2014-0933  Candidate  Cross-site request forgery (CSRF) vulnerability in IBM InfoSphere Information Server Metadata Workbench 8.1 through 9.1 allows remote attackers to hijack the authentication of arbitrary users.  Assigned (20140106)  None (candidate not yet proposed)    View
68598  CVE-2014-1303  Candidate  Heap-based buffer overflow in Apple Safari 7.0.2 allows remote attackers to execute arbitrary code and bypass a sandbox protection mechanism via unspecified vectors, as demonstrated by Liang Chen during a Pwn2Own competition at CanSecWest 2014.  Assigned (20140108)  None (candidate not yet proposed)    View

Page 20151 of 20943, showing 5 records out of 104715 total, starting on record 100751, ending on 100755

Actions