CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7698  CVE-2003-0874  Candidate  Multiple SQL injection vulnerabilities in DeskPRO 1.1.0 and earlier allow remote attackers to insert arbitrary SQL and conduct unauthorized activities via (1) the cat parameter in faq.php, (2) the article parameter in faq.php, (3) the tickedid parameter in view.php, and (4) the Password entry on the logon screen.  Assigned (20031021)  None (candidate not yet proposed)    View
73234  CVE-2014-5935  Candidate  The Daily Free App @ Amazon (aka com.kattanweb.android.dfaa) application 1.5.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7954  CVE-2003-1130  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2003-1071. Reason: This candidate is a duplicate of CVE-2003-1071. Notes: All CVE users should reference CVE-2003-1071 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20050312)  None (candidate not yet proposed)    View
73490  CVE-2014-6191  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140902)  None (candidate not yet proposed)    View
8210  CVE-2003-1386  Candidate  AXIS 2400 Video Server 2.00 through 2.33 allows remote attackers to obtain sensitive information via an HTTP request to /support/messages, which displays the server"s /var/log/messages file.  Assigned (20071018)  None (candidate not yet proposed)    View

Page 1442 of 20943, showing 5 records out of 104715 total, starting on record 7206, ending on 7210

Actions