CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
68089 | CVE-2014-0680 | Candidate | Cross-site scripting (XSS) vulnerability in the HTTP control interface in the NAC Web Agent component in Cisco Identity Services Engine (ISE) allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCui15038. | Assigned (20140102) | None (candidate not yet proposed) | View | |
2809 | CVE-2000-1242 | Candidate | The HTTP service in American Power Conversion (APC) PowerChute uses a default username and password, which allows remote attackers to gain system access. | Assigned (20061209) | None (candidate not yet proposed) | View | |
68345 | CVE-2014-0936 | Candidate | IBM Security AppScan Source 8.0 through 9.0, when the publish-assessment permission is not properly restricted for the configured database server, transmits cleartext assessment data, which allows remote attackers to obtain sensitive information by sniffing the network. | Assigned (20140106) | None (candidate not yet proposed) | View | |
68601 | CVE-2014-1306 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20140108) | None (candidate not yet proposed) | View | |
68857 | CVE-2014-1562 | Candidate | Unspecified vulnerability in the browser engine in Mozilla Firefox before 32.0, Firefox ESR 24.x before 24.8 and 31.x before 31.1, and Thunderbird 24.x before 24.8 and 31.x before 31.1 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors. | Assigned (20140116) | None (candidate not yet proposed) | View |
Page 20370 of 20943, showing 5 records out of 104715 total, starting on record 101846, ending on 101850