CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
70399 | CVE-2014-3104 | Candidate | IBM Rational ClearQuest 7.1 before 7.1.2.15, 8.0.0 before 8.0.0.12, and 8.0.1 before 8.0.1.5 allows remote attackers to cause a denial of service (memory consumption) via a crafted XML document containing a large number of nested entity references, a similar issue to CVE-2003-1564. | Assigned (20140429) | None (candidate not yet proposed) | View | |
70655 | CVE-2014-3359 | Candidate | Memory leak in Cisco IOS 15.1 through 15.4 and IOS XE 3.4.xS, 3.5.xS, 3.6.xS, and 3.7.xS before 3.7.6S; 3.8.xS, 3.9.xS, and 3.10.xS before 3.10.1S; and 3.11.xS before 3.12S allows remote attackers to cause a denial of service (memory consumption or device reload) via malformed DHCPv6 packets, aka Bug ID CSCum90081. | Assigned (20140507) | None (candidate not yet proposed) | View | |
70911 | CVE-2014-3615 | Candidate | The VGA emulator in QEMU allows local guest users to read host memory by setting the display to a high resolution. | Assigned (20140514) | None (candidate not yet proposed) | View | |
5631 | CVE-2002-1247 | Candidate | Buffer overflow in LISa allows local users to gain access to a raw socket via a long LOGNAME environment variable for the resLISa daemon. | Proposed (20030317) | ACCEPT(3) Armstrong, Cole, Green | MODIFY(1) Cox | Cox> Addref: RHSA-2002:221 | Suggest mention of KDE in the description | View |
71167 | CVE-2014-3871 | Candidate | Multiple SQL injection vulnerabilities in register.php in Geodesic Solutions GeoCore MAX 7.3.3 (formerly GeoClassifieds and GeoAuctions) allow remote attackers to execute arbitrary SQL commands via the (1) c[password] or (2) c[username] parameter. NOTE: the b parameter to index.php vector is already covered by CVE-2006-3823. | Assigned (20140527) | None (candidate not yet proposed) | View |
Page 20870 of 20943, showing 5 records out of 104715 total, starting on record 104346, ending on 104350