CVE List

Id CVE No. Status Description Phase Votes Comments Actions
68350  CVE-2014-0941  Candidate  Cross-site scripting (XSS) vulnerability in webtop/eventviewer/eventViewer.jsp in the Web GUI in IBM Netcool/OMNIbus 7.4.0 before FP2 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL, a different vulnerability than CVE-2014-0942.  Assigned (20140106)  None (candidate not yet proposed)    View
3070  CVE-2001-0249  Candidate  Heap overflow in FTP daemon in Solaris 8 allows remote attackers to execute arbitrary commands by creating a long pathname and calling the LIST command, which uses glob to generate long strings.  Interim (20010911)  ACCEPT(5) Baker, Cole, Dik, Renaud, Ziese | MODIFY(1) Frech | NOOP(1) Wall  Frech> XF:ftp-glob-expansion(6332) | Dik> sun bug: 4436988 | Dik> sun bug: 4436988  View
68606  CVE-2014-1311  Candidate  WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-04-01-1.  Assigned (20140108)  None (candidate not yet proposed)    View
3326  CVE-2001-0509  Candidate  Vulnerabilities in RPC servers in (1) Microsoft Exchange Server 2000 and earlier, (2) Microsoft SQL Server 2000 and earlier, (3) Windows NT 4.0, and (4) Windows 2000 allow remote attackers to cause a denial of service via malformed inputs.  Modified (20061101)  ACCEPT(7) Armstrong, Baker, Bishop, Cole, Foat, Wall, Ziese | MODIFY(1) Frech | NOOP(1) Christey  Frech> XF:ms-malformed-rpc-dos(6914) | Christey> BID:3104 | URL:http://www.securityfocus.com/bid/3104 | BUGTRAQ:20010730 Multiple Remote DoS vulnerabilities in Microsoft DCE/RPC deamons | URL:http://online.securityfocus.com/archive/1/200450  View
68862  CVE-2014-1567  Candidate  Use-after-free vulnerability in DirectionalityUtils.cpp in Mozilla Firefox before 32.0, Firefox ESR 24.x before 24.8 and 31.x before 31.1, and Thunderbird 24.x before 24.8 and 31.x before 31.1 allows remote attackers to execute arbitrary code via text that is improperly handled during the interaction between directionality resolution and layout.  Assigned (20140116)  None (candidate not yet proposed)    View

Page 20177 of 20943, showing 5 records out of 104715 total, starting on record 100881, ending on 100885

Actions