CVE List

Id CVE No. Status Description Phase Votes Comments Actions
70660  CVE-2014-3364  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in the web framework in Cisco Prime Security Manager (aka PRSM) 9.2.1-2 and earlier allow remote attackers to inject arbitrary web script or HTML via a (1) Access Policies or (2) Device Summary Dashboard parameter, aka Bug ID CSCuq80661.  Assigned (20140507)  None (candidate not yet proposed)    View
5380  CVE-2002-0992  Candidate  Unknown vulnerability in IPV6 functionality for DCE daemons (1) dced or (2) rpcd on HP-UX 11.11 allows attackers to cause a denial of service (crash) via an attack that modifies internal data.  Proposed (20020830)  ACCEPT(3) Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall    View
70916  CVE-2014-3620  Candidate  cURL and libcurl before 7.38.0 allow remote attackers to bypass the Same Origin Policy and set cookies for arbitrary sites by setting a cookie for a top-level domain.  Assigned (20140514)  None (candidate not yet proposed)    View
5636  CVE-2002-1252  Entry  The Application Messaging Gateway for PeopleTools 8.1x before 8.19, as used in various PeopleSoft products, allows remote attackers to read arbitrary files via certain XML External Entities (XXE) fields in an HTTP POST request that is processed by the SimpleFileHandler handler.        View
71172  CVE-2014-3876  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Frams" Fast File EXchange (F*EX, aka fex) before fex-20140530 allow remote attackers to inject arbitrary web script or HTML via the (1) akey parameter to rup or (2) disclaimer or (3) gm parameter to fuc.  Assigned (20140527)  None (candidate not yet proposed)    View

Page 331 of 20943, showing 5 records out of 104715 total, starting on record 1651, ending on 1655

Actions