CVE List

Id CVE No. Status Description Phase Votes Comments Actions
70148  CVE-2014-2853  Candidate  Cross-site scripting (XSS) vulnerability in includes/actions/InfoAction.php in MediaWiki before 1.21.9 and 1.22.x before 1.22.6 allows remote attackers to inject arbitrary web script or HTML via the sort key in an info action.  Assigned (20140414)  None (candidate not yet proposed)    View
4868  CVE-2002-0476  Candidate  Standalone Macromedia Flash Player 5.0 allows remote attackers to save arbitrary files and programs via a .SWF file containing the undocumented "save" FSCommand.  Proposed (20020611)  ACCEPT(5) Baker, Cole, Frech, Green, Wall | NOOP(2) Cox, Foat | REVIEWING(1) Christey  Christey> See comments for CVE-2002-0477.  View
70404  CVE-2014-3109  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140429)  None (candidate not yet proposed)    View
70660  CVE-2014-3364  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the web framework in Cisco Prime Security Manager (aka PRSM) 9.2.1-2 and earlier allow remote attackers to inject arbitrary web script or HTML via a (1) Access Policies or (2) Device Summary Dashboard parameter, aka Bug ID CSCuq80661.  Assigned (20140507)  None (candidate not yet proposed)    View
5380  CVE-2002-0992  Candidate  Unknown vulnerability in IPV6 functionality for DCE daemons (1) dced or (2) rpcd on HP-UX 11.11 allows attackers to cause a denial of service (crash) via an attack that modifies internal data.  Proposed (20020830)  ACCEPT(3) Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall    View

Page 326 of 20943, showing 5 records out of 104715 total, starting on record 1626, ending on 1630

Actions