CVE List

Id CVE No. Status Description Phase Votes Comments Actions
67577  CVE-2014-0168  Candidate  Cross-site request forgery (CSRF) vulnerability in Jolokia before 1.2.1 allows remote attackers to hijack the authentication of users for requests that execute MBeans methods via a crafted web page.  Assigned (20131203)  None (candidate not yet proposed)    View
67833  CVE-2014-0424  Candidate  Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment, a different vulnerability than CVE-2013-5889, CVE-2013-5902, CVE-2014-0410, CVE-2014-0415, and CVE-2014-0418.  Assigned (20131212)  None (candidate not yet proposed)    View
2553  CVE-2000-0984  Entry  The HTTP server in Cisco IOS 12.0 through 12.1 allows local users to cause a denial of service (crash and reload) via a URL containing a "?/" string.        View
68089  CVE-2014-0680  Candidate  Cross-site scripting (XSS) vulnerability in the HTTP control interface in the NAC Web Agent component in Cisco Identity Services Engine (ISE) allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCui15038.  Assigned (20140102)  None (candidate not yet proposed)    View
2809  CVE-2000-1242  Candidate  The HTTP service in American Power Conversion (APC) PowerChute uses a default username and password, which allows remote attackers to gain system access.  Assigned (20061209)  None (candidate not yet proposed)    View

Page 20385 of 20943, showing 5 records out of 104715 total, starting on record 101921, ending on 101925

Actions