CVE List

Id CVE No. Status Description Phase Votes Comments Actions
67326  CVE-2013-7379  Candidate  The admin API in the tomato module before 0.0.6 for Node.js does not properly check the access key when it is set to a string, which allows remote attackers to bypass authentication via a string in the access-key header that partially matches config.master.api.access_key.  Assigned (20140514)  None (candidate not yet proposed)    View
67582  CVE-2014-0173  Candidate  The Jetpack plugin before 1.9 before 1.9.4, 2.0.x before 2.0.9, 2.1.x before 2.1.4, 2.2.x before 2.2.7, 2.3.x before 2.3.7, 2.4.x before 2.4.4, 2.5.x before 2.5.2, 2.6.x before 2.6.3, 2.7.x before 2.7.2, 2.8.x before 2.8.2, and 2.9.x before 2.9.3 for WordPress does not properly restrict access to the XML-RPC service, which allows remote attackers to bypass intended restrictions and publish posts via unspecified vectors. NOTE: some of these details are obtained from third party information.  Assigned (20131203)  None (candidate not yet proposed)    View
67838  CVE-2014-0429  Candidate  Unspecified vulnerability in Oracle Java SE 5.0u61, 6u71, 7u51, and 8; JRockit R27.8.1 and R28.3.1; and Java SE Embedded 7u51 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D.  Assigned (20131212)  None (candidate not yet proposed)    View
68094  CVE-2014-0685  Candidate  Cisco Nexus 1000V InterCloud 5.2(1)IC1(1.2) and earlier for VMware allows remote attackers to bypass ACL deny statements via crafted (1) IGMPv2 or (2) IGMPv3 packets, aka Bug ID CSCug61691.  Assigned (20140102)  None (candidate not yet proposed)    View
2814  CVE-2000-1247  Candidate  The default configuration of the jserv-status handler in jserv.conf in Apache JServ 1.1.2 includes an "allow from 127.0.0.1" line, which allows local users to discover JDBC passwords or other sensitive information via a direct request to the jserv/ URI.  Assigned (20111004)  None (candidate not yet proposed)    View

Page 20176 of 20943, showing 5 records out of 104715 total, starting on record 100876, ending on 100880

Actions