CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
8967 | CVE-2004-0539 | Candidate | The "Show in Finder" button in the Safari web browser in Mac OS X 10.3.4 and 10.2.8 may execute downloaded applications, which could allow remote attackers to execute arbitrary code. | Assigned (20040604) | None (candidate not yet proposed) | View | |
74503 | CVE-2014-7203 | Candidate | libzmq (aka ZeroMQ/C++) 4.0.x before 4.0.5 does not ensure that nonces are unique, which allows man-in-the-middle attackers to conduct replay attacks via unspecified vectors. | Assigned (20140926) | None (candidate not yet proposed) | View | |
9223 | CVE-2004-0795 | Candidate | DB2 8.1 remote command server (DB2RCMD.EXE) executes the db2rcmdc.exe program as the db2admin administrator, which allows local users to gain privileges via the DB2REMOTECMD named pipe. | Assigned (20040819) | None (candidate not yet proposed) | View | |
74759 | CVE-2014-7458 | Candidate | The BloomYou Valentine (aka com.bloomyouteam.bloomyou.valentine) application 2.4 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | Assigned (20141003) | None (candidate not yet proposed) | View | |
9479 | CVE-2004-1051 | Candidate | sudo before 1.6.8p2 allows local users to execute arbitrary commands by using "()" style environment variables to create functions that have the same name as any program within the bash script that is called without using the program"s full pathname. | Assigned (20041117) | None (candidate not yet proposed) | View |
Page 1183 of 20943, showing 5 records out of 104715 total, starting on record 5911, ending on 5915