CVE List

Id CVE No. Status Description Phase Votes Comments Actions
70155  CVE-2014-2860  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in PaperThin CommonSpot before 7.0.2 and 8.x before 8.0.3 allow remote attackers to inject arbitrary web script or HTML via a crafted HTTP request to a (1) ColdFusion or (2) JavaScript component.  Assigned (20140415)  None (candidate not yet proposed)    View
70411  CVE-2014-3116  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140429)  None (candidate not yet proposed)    View
70667  CVE-2014-3371  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140507)  None (candidate not yet proposed)    View
70923  CVE-2014-3627  Candidate  The YARN NodeManager daemon in Apache Hadoop 0.23.0 through 0.23.11 and 2.x before 2.5.2, when using Kerberos authentication, allows remote cluster users to change the permissions of certain files to world-readable via a symlink attack in a public tar archive, which is not properly handled during localization, related to distributed cache.  Assigned (20140514)  None (candidate not yet proposed)    View
5643  CVE-2002-1259  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2002-1286. Reason: This candidate is a reservation duplicate of CVE-2002-1286. Notes: All CVE users should reference CVE-2002-1286 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20021104)  None (candidate not yet proposed)    View

Page 890 of 20943, showing 5 records out of 104715 total, starting on record 4446, ending on 4450

Actions