CVE List

Id CVE No. Status Description Phase Votes Comments Actions
1787  CVE-2000-0209  Entry  Buffer overflow in Lynx 2.x allows remote attackers to crash Lynx and possibly execute commands via a long URL in a malicious web page.        View
67323  CVE-2013-7376  Candidate  Multiple cross-site request forgery (CSRF) vulnerabilities in OpenX 2.8.10, possibly before revision 82710, allow remote attackers to hijack the authentication of administrators, as demonstrated by requests that conduct directory traversal attacks via the group parameter to (1) plugin-preferences.php or (2) plugin-settings.php in www/admin, a different vulnerability than CVE-2013-3514.  Assigned (20140514)  None (candidate not yet proposed)    View
2043  CVE-2000-0465  Entry  Internet Explorer 4.x and 5.x does not properly verify the domain of a frame within a browser window, which allows a remote attacker to read client files via the frame, aka the "Frame Domain Verification" vulnerability.        View
67579  CVE-2014-0170  Candidate  Teiid before 8.4.3 and before 8.7 and Red Hat JBoss Data Virtualization 6.0.0 before patch 3 allows remote attackers to read arbitrary files via a crafted request to a REST endpoint, related to an XML External Entity (XXE) issue.  Assigned (20131203)  None (candidate not yet proposed)    View
67835  CVE-2014-0426  Candidate  Unspecified vulnerability in the Oracle Containers for J2EE component in Oracle Fusion Middleware 10.1.3.5 allows remote attackers to affect integrity via vectors related to HTTP Request Handling, a different vulnerability than CVE-2014-0413.  Assigned (20131212)  None (candidate not yet proposed)    View

Page 20174 of 20943, showing 5 records out of 104715 total, starting on record 100866, ending on 100870

Actions