CVE List

Id CVE No. Status Description Phase Votes Comments Actions
70656  CVE-2014-3360  Candidate  Cisco IOS 12.4 and 15.0 through 15.4 and IOS XE 3.1.xS, 3.2.xS, 3.3.xS, 3.4.xS, 3.5.xS, 3.6.xS, and 3.7.xS before 3.7.6S; 3.8.xS, 3.9.xS, and 3.10.xS before 3.10.1S; and 3.11.xS before 3.12S allow remote attackers to cause a denial of service (device reload) via a crafted SIP message, aka Bug ID CSCul46586.  Assigned (20140507)  None (candidate not yet proposed)    View
70912  CVE-2014-3616  Candidate  nginx 0.5.6 through 1.7.4, when using the same shared ssl_session_cache or ssl_session_ticket_key for multiple servers, can reuse a cached SSL session for an unrelated context, which allows remote attackers with certain privileges to conduct "virtual host confusion" attacks.  Assigned (20140514)  None (candidate not yet proposed)    View
71168  CVE-2014-3872  Candidate  Multiple SQL injection vulnerabilities in the administration login page in D-Link DAP-1350 (Rev. A1) with firmware 1.14 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password.  Assigned (20140527)  None (candidate not yet proposed)    View
5888  CVE-2002-1504  Candidate  Directory traversal vulnerability in WebServer 4 Everyone 1.22 allows remote attackers to read arbitrary files via ".." (dot-dot backslash) sequences in a URL.  Proposed (20030317)  ACCEPT(1) Armstrong | NOOP(3) Cole, Cox, Wall    View
71424  CVE-2014-4128  Candidate  Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability."  Assigned (20140612)  None (candidate not yet proposed)    View

Page 618 of 20943, showing 5 records out of 104715 total, starting on record 3086, ending on 3090

Actions