CVE List

Id CVE No. Status Description Phase Votes Comments Actions
74770  CVE-2014-7469  Candidate  The Best Beginning (aka com.bbbeta) application 2.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9490  CVE-2004-1062  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in ViewCVS 0.9.2 allow remote attackers to inject arbitrary HTML and web script via certain error messages.  Assigned (20041123)  None (candidate not yet proposed)    View
75026  CVE-2014-7725  Candidate  The Rally Albania Live 2014 (aka com.wRallyAlbaniaLIVE2014) application 0.11 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9746  CVE-2004-1318  Candidate  Cross-site scripting (XSS) vulnerability in namazu.cgi for Namazu 2.0.13 and earlier allows remote attackers to inject arbitrary HTML and web script via a query that starts with a tab ("%09") character, which prevents the rest of the query from being properly sanitized.  Assigned (20050103)  None (candidate not yet proposed)    View
75282  CVE-2014-7981  Candidate  SQL injection vulnerability in Joomla! CMS 3.1.x and 3.2.x before 3.2.3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.  Assigned (20141008)  None (candidate not yet proposed)    View

Page 1434 of 20943, showing 5 records out of 104715 total, starting on record 7166, ending on 7170

Actions