CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
70660 | CVE-2014-3364 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in the web framework in Cisco Prime Security Manager (aka PRSM) 9.2.1-2 and earlier allow remote attackers to inject arbitrary web script or HTML via a (1) Access Policies or (2) Device Summary Dashboard parameter, aka Bug ID CSCuq80661. | Assigned (20140507) | None (candidate not yet proposed) | View | |
5380 | CVE-2002-0992 | Candidate | Unknown vulnerability in IPV6 functionality for DCE daemons (1) dced or (2) rpcd on HP-UX 11.11 allows attackers to cause a denial of service (crash) via an attack that modifies internal data. | Proposed (20020830) | ACCEPT(3) Baker, Cole, Frech | NOOP(3) Cox, Foat, Wall | View | |
70916 | CVE-2014-3620 | Candidate | cURL and libcurl before 7.38.0 allow remote attackers to bypass the Same Origin Policy and set cookies for arbitrary sites by setting a cookie for a top-level domain. | Assigned (20140514) | None (candidate not yet proposed) | View | |
5636 | CVE-2002-1252 | Entry | The Application Messaging Gateway for PeopleTools 8.1x before 8.19, as used in various PeopleSoft products, allows remote attackers to read arbitrary files via certain XML External Entities (XXE) fields in an HTTP POST request that is processed by the SimpleFileHandler handler. | View | |||
71172 | CVE-2014-3876 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in Frams" Fast File EXchange (F*EX, aka fex) before fex-20140530 allow remote attackers to inject arbitrary web script or HTML via the (1) akey parameter to rup or (2) disclaimer or (3) gm parameter to fuc. | Assigned (20140527) | None (candidate not yet proposed) | View |
Page 331 of 20943, showing 5 records out of 104715 total, starting on record 1651, ending on 1655