CVE List

Id CVE No. Status Description Phase Votes Comments Actions
70648  CVE-2014-3352  Candidate  Cisco Intelligent Automation for Cloud (aka Cisco Cloud Portal) 2008.3_SP9 and earlier does not properly consider whether a session is a problematic NULL session, which allows remote attackers to obtain sensitive information via crafted packets, related to an "iFrame vulnerability," aka Bug ID CSCuh84801.  Assigned (20140507)  None (candidate not yet proposed)    View
70904  CVE-2014-3608  Candidate  The VMWare driver in OpenStack Compute (Nova) before 2014.1.3 allows remote authenticated users to bypass the quota limit and cause a denial of service (resource consumption) by putting the VM into the rescue state, suspending it, which puts into an ERROR state, and then deleting the image. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-2573.  Assigned (20140514)  None (candidate not yet proposed)    View
5624  CVE-2002-1240  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20021101)  None (candidate not yet proposed)    View
71160  CVE-2014-3864  Candidate  Directory traversal vulnerability in dpkg-source in dpkg-dev 1.3.0 allows remote attackers to modify files outside of the intended directories via a crafted source package that lacks a --- header line.  Assigned (20140525)  None (candidate not yet proposed)    View
5880  CVE-2002-1496  Entry  Heap-based buffer overflow in Null HTTP Server 0.5.0 and earlier allows remote attackers to execute arbitrary code via a negative value in the Content-Length HTTP header.        View

Page 20309 of 20943, showing 5 records out of 104715 total, starting on record 101541, ending on 101545

Actions