CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8053  CVE-2003-1229  Candidate  X509TrustManager in (1) Java Secure Socket Extension (JSSE) in SDK and JRE 1.4.0 through 1.4.0_01, (2) JSSE before 1.0.3, (3) Java Plug-in SDK and JRE 1.3.0 through 1.4.1, and (4) Java Web Start 1.0 through 1.2 incorrectly calls the isClientTrusted method when determining server trust, which results in improper validation of digital certificate and allows remote attackers to (1) falsely authenticate peers for SSL or (2) incorrectly validate signed JAR files.  Assigned (20050817)  None (candidate not yet proposed)    View
58905  CVE-2012-5662  Candidate  x3270 before 3.3.12ga12 does not verify that the server hostname matches a domain name in the subject"s Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate.  Assigned (20121024)  None (candidate not yet proposed)    View
67330  CVE-2013-7383  Candidate  x2gocleansessions in X2Go Server before 4.0.0.8 and 4.0.1.x before 4.0.1.10 allows remote authenticated users to gain privileges via unspecified vectors, possibly related to backticks.  Assigned (20140519)  None (candidate not yet proposed)    View
8585  CVE-2004-0157  Candidate  x11.c in xonix 1.4 and earlier uses the current working directory to find and execute the rmail program, which allows local users to execute arbitrary code by modifying the path to point to a malicious rmail program.  Assigned (20040213)  None (candidate not yet proposed)    View
30154  CVE-2008-0037  Candidate  X11 in Apple Mac OS X 10.5 through 10.5.1 does not properly handle when the "Allow connections from network client" preference is disabled, which allows remote attackers to bypass intended access restrictions and connect to the X server.  Assigned (20080103)  None (candidate not yet proposed)    View

Page 115 of 20943, showing 5 records out of 104715 total, starting on record 571, ending on 575

Actions