CVE List

Id CVE No. Status Description Phase Votes Comments Actions
67594  CVE-2014-0185  Candidate  sapi/fpm/fpm/fpm_unix.c in the FastCGI Process Manager (FPM) in PHP before 5.4.28 and 5.5.x before 5.5.12 uses 0666 permissions for the UNIX socket, which allows local users to gain privileges via a crafted FastCGI client.  Assigned (20131203)  None (candidate not yet proposed)    View
67850  CVE-2014-0441  Candidate  Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.52 and 8.53 allows remote attackers to affect availability via unknown vectors related to Integration Broker.  Assigned (20131212)  None (candidate not yet proposed)    View
68106  CVE-2014-0697  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140102)  None (candidate not yet proposed)    View
68362  CVE-2014-0953  Candidate  Cross-site scripting (XSS) vulnerability in IBM WebSphere Portal 6.1.0.0 through 6.1.0.6 CF27, 6.1.5.0 through 6.1.5.3 CF27, 7.0.0 through 7.0.0.2 CF28, and 8.0.0 before 8.0.0.1 CF12 allows remote attackers to inject arbitrary web script or HTML via a crafted URL.  Assigned (20140106)  None (candidate not yet proposed)    View
68618  CVE-2014-1323  Candidate  WebKit, as used in Apple Safari before 6.1.4 and 7.x before 7.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-05-21-1.  Assigned (20140108)  None (candidate not yet proposed)    View

Page 811 of 20943, showing 5 records out of 104715 total, starting on record 4051, ending on 4055

Actions