CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
71680 | CVE-2014-4384 | Candidate | Directory traversal vulnerability in the App Installation feature in Apple iOS before 8 allows local users to install unverified apps by triggering code-signature validation of an unintended bundle. | Assigned (20140620) | None (candidate not yet proposed) | View | |
6400 | CVE-2002-2018 | Candidate | sastcpd in SAS/Base 8.0 might allow local users to gain privileges by setting the netencralg environment variable, which causes a segmentation fault. | Assigned (20050714) | None (candidate not yet proposed) | View | |
71936 | CVE-2014-4639 | Candidate | EMC Documentum Web Development Kit (WDK) before 6.8 does not properly generate random numbers for a certain parameter related to Webtop components, which makes it easier for remote attackers to conduct phishing attacks via brute-force attempts to predict the parameter value. | Assigned (20140624) | None (candidate not yet proposed) | View | |
6656 | CVE-2002-2274 | Candidate | akfingerd 0.5 allows local users to read arbitrary files as the akfingerd user (nobody) via a symlink attack on the .plan file. | Assigned (20071017) | None (candidate not yet proposed) | View | |
72192 | CVE-2014-4895 | Candidate | The Herpin Time Radio (aka com.herpin.time.radio) application 2.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | Assigned (20140710) | None (candidate not yet proposed) | View |
Page 1166 of 20943, showing 5 records out of 104715 total, starting on record 5826, ending on 5830