CVE List

Id CVE No. Status Description Phase Votes Comments Actions
74002  CVE-2014-6702  Candidate  The StarSat International (aka com.conduit.app_b15a1814d2d840198e70e3c235af5e8b.app) application 1.41.54.9222 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140919)  None (candidate not yet proposed)    View
74258  CVE-2014-6958  Candidate  The ISMRM-ESMRMB 2014 (aka com.coreapps.android.followme.ismrm_esmrmb14) application 6.0.8.5 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140919)  None (candidate not yet proposed)    View
8978  CVE-2004-0550  Candidate  Buffer overflow in Real Networks RealPlayer 10 allows remote attackers to execute arbitrary code via a URL with a large number of "." (period) characters.  Assigned (20040611)  None (candidate not yet proposed)    View
74514  CVE-2014-7213  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140927)  None (candidate not yet proposed)    View
9234  CVE-2004-0806  Candidate  cdrecord in the cdrtools package before 2.01, when installed setuid root, does not properly drop privileges before executing a program specified in the RSH environment variable, which allows local users to gain privileges.  Assigned (20040825)  None (candidate not yet proposed)    View

Page 1433 of 20943, showing 5 records out of 104715 total, starting on record 7161, ending on 7165

Actions