CVE List

Id CVE No. Status Description Phase Votes Comments Actions
71680  CVE-2014-4384  Candidate  Directory traversal vulnerability in the App Installation feature in Apple iOS before 8 allows local users to install unverified apps by triggering code-signature validation of an unintended bundle.  Assigned (20140620)  None (candidate not yet proposed)    View
6400  CVE-2002-2018  Candidate  sastcpd in SAS/Base 8.0 might allow local users to gain privileges by setting the netencralg environment variable, which causes a segmentation fault.  Assigned (20050714)  None (candidate not yet proposed)    View
71936  CVE-2014-4639  Candidate  EMC Documentum Web Development Kit (WDK) before 6.8 does not properly generate random numbers for a certain parameter related to Webtop components, which makes it easier for remote attackers to conduct phishing attacks via brute-force attempts to predict the parameter value.  Assigned (20140624)  None (candidate not yet proposed)    View
6656  CVE-2002-2274  Candidate  akfingerd 0.5 allows local users to read arbitrary files as the akfingerd user (nobody) via a symlink attack on the .plan file.  Assigned (20071017)  None (candidate not yet proposed)    View
72192  CVE-2014-4895  Candidate  The Herpin Time Radio (aka com.herpin.time.radio) application 2.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140710)  None (candidate not yet proposed)    View

Page 1166 of 20943, showing 5 records out of 104715 total, starting on record 5826, ending on 5830

Actions