CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69118  CVE-2014-1823  Candidate  Cross-site scripting (XSS) vulnerability in the Web Components Server in Microsoft Lync Server 2010 and 2013 allows remote attackers to inject arbitrary web script or HTML via a crafted URL containing a valid meeting ID, aka "Lync Server Content Sanitization Vulnerability."  Assigned (20140129)  None (candidate not yet proposed)    View
69374  CVE-2014-2079  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140219)  None (candidate not yet proposed)    View
69630  CVE-2014-2335  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the Web User Interface in Fortinet FortiManager before 5.0.7 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2014-2336.  Assigned (20140312)  None (candidate not yet proposed)    View
4350  CVE-2001-1550  Candidate  CentraOne 5.2 and Centra ASP with basic authentication enabled creates world-writable base64 encoded log files, which allows local users to obtain cleartext passwords from decoded log files and impersonate users.  Assigned (20050714)  None (candidate not yet proposed)    View
69886  CVE-2014-2591  Candidate  Untrusted search path vulnerability in BMC Patrol for AIX 3.9.00 allows local users to gain privileges via a crafted library, related to an incorrect RPATH setting.  Assigned (20140324)  None (candidate not yet proposed)    View

Page 20756 of 20943, showing 5 records out of 104715 total, starting on record 103776, ending on 103780

Actions