CVE List

Id CVE No. Status Description Phase Votes Comments Actions
69380  CVE-2014-2085  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-2084. Reason: This issue was MERGED into CVE-2014-2084 in accordance with CVE content decisions, because it is the same type of vulnerability and affects the same versions. Notes: All CVE users should reference CVE-2014-2084 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20140219)  None (candidate not yet proposed)    View
69636  CVE-2014-2341  Candidate  Session fixation vulnerability in CubeCart before 5.2.9 allows remote attackers to hijack web sessions via the PHPSESSID parameter.  Assigned (20140312)  None (candidate not yet proposed)    View
4356  CVE-2001-1556  Candidate  The log files in Apache web server contain information directly supplied by clients and does not filter or quote control characters, which could allow remote attackers to hide HTTP requests and spoof source IP addresses when logs are viewed with UNIX programs such as cat, tail, and grep.  Assigned (20050714)  None (candidate not yet proposed)    View
69892  CVE-2014-2597  Candidate  PCNetSoftware RAC Server 4.0.4 and 4.0.5 allows local users to cause a denial of service (disabled keyboard or crash) via a large input buffer to unspecified IOCTL requests in RACDriver.sys, which triggers a buffer over-read.  Assigned (20140324)  None (candidate not yet proposed)    View
70148  CVE-2014-2853  Candidate  Cross-site scripting (XSS) vulnerability in includes/actions/InfoAction.php in MediaWiki before 1.21.9 and 1.22.x before 1.22.6 allows remote attackers to inject arbitrary web script or HTML via the sort key in an info action.  Assigned (20140414)  None (candidate not yet proposed)    View

Page 350 of 20943, showing 5 records out of 104715 total, starting on record 1746, ending on 1750

Actions