CVE List

Id CVE No. Status Description Phase Votes Comments Actions
67583  CVE-2014-0174  Candidate  Cumin (aka MRG Management Console), as used in Red Hat Enterprise MRG 2.5, does not include the HTTPOnly flag in a Set-Cookie header for the session cookie, which makes it easier for remote attackers to obtain potentially sensitive information via script access to this cookie.  Assigned (20131203)  None (candidate not yet proposed)    View
67839  CVE-2014-0430  Candidate  Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.6.13 and earlier allows remote authenticated users to affect availability via unknown vectors related to Performance Schema.  Assigned (20131212)  None (candidate not yet proposed)    View
68095  CVE-2014-0686  Candidate  Cisco Unified Communications Manager (aka Unified CM) 9.1 (2.10000.28) and earlier allows local users to gain privileges by leveraging incorrect file permissions, aka Bug IDs CSCul24917 and CSCul24908.  Assigned (20140102)  None (candidate not yet proposed)    View
2815  CVE-2000-1248  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20120104)  None (candidate not yet proposed)    View
68351  CVE-2014-0942  Candidate  Cross-site scripting (XSS) vulnerability in webtop/eventviewer/eventViewer.jsp in the Web GUI in IBM Netcool/OMNIbus 7.4.0 before FP2 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL, a different vulnerability than CVE-2014-0941.  Assigned (20140106)  None (candidate not yet proposed)    View

Page 20832 of 20943, showing 5 records out of 104715 total, starting on record 104156, ending on 104160

Actions