CVE List

Id CVE No. Status Description Phase Votes Comments Actions
67320  CVE-2013-7373  Candidate  Android before 4.4 does not properly arrange for seeding of the OpenSSL PRNG, which makes it easier for attackers to defeat cryptographic protection mechanisms by leveraging use of the PRNG within multiple applications.  Assigned (20140429)  None (candidate not yet proposed)    View
2040  CVE-2000-0462  Entry  ftpd in NetBSD 1.4.2 does not properly parse entries in /etc/ftpchroot and does not chroot the specified users, which allows those users to access other files outside of their home directory.        View
67576  CVE-2014-0167  Candidate  The Nova EC2 API security group implementation in OpenStack Compute (Nova) 2013.1 before 2013.2.4 and icehouse before icehouse-rc2 does not enforce RBAC policies for (1) add_rules, (2) remove_rules, (3) destroy, and other unspecified methods in compute/api.py when using non-default policies, which allows remote authenticated users to gain privileges via these API requests.  Assigned (20131203)  None (candidate not yet proposed)    View
2296  CVE-2000-0720  Entry  news.cgi in GWScripts News Publisher does not properly authenticate requests to add an author to the author index, which allows remote attackers to add new authors by directly posting an HTTP request to the new.cgi program with an addAuthor parameter, and setting the Referer to the news.cgi program.        View
67832  CVE-2014-0423  Candidate  Unspecified vulnerability in Oracle Java SE 5.0u55, 6u65, and 7u45; JRockit R27.7.7 and R28.2.9; Java SE Embedded 7u45; and OpenJDK 7 allows remote authenticated users to affect confidentiality and availability via unknown vectors related to Beans. NOTE: the previous information is from the January 2014 CPU. Oracle has not commented on third-party claims that this issue is an XML External Entity (XXE) vulnerability in DocumentHandler.java, related to Beans decoding.  Assigned (20131212)  None (candidate not yet proposed)    View

Page 20304 of 20943, showing 5 records out of 104715 total, starting on record 101516, ending on 101520

Actions