CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7955  CVE-2003-1131  Candidate  PHP remote file inclusion vulnerability in index.php in KnowledgeBuilder, referred to as KnowledgeBase, allows remote attackers to execute arbitrary PHP code by modifying the page parameter to reference a URL on a remote web server that contains the code.  Assigned (20050320)  None (candidate not yet proposed)    View
73491  CVE-2014-6192  Candidate  Cross-site scripting (XSS) vulnerability in IBM Curam Social Program Management 6.0 SP2 before EP26, 6.0.4 before 6.0.4.5 iFix10, 6.0.5 before 6.0.5.6, and 6.0.5.5a before 6.0.5.8 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.  Assigned (20140902)  None (candidate not yet proposed)    View
8211  CVE-2003-1387  Candidate  Buffer overflow in Opera 6.05 and 6.06, and possibly other versions, allows remote attackers to execute arbitrary code via a URL with a long username.  Assigned (20071018)  None (candidate not yet proposed)    View
73747  CVE-2014-6447  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140917)  None (candidate not yet proposed)    View
74003  CVE-2014-6703  Candidate  The phonearabs4 (aka com.phonearabs4.myapps) application 1.4 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140919)  None (candidate not yet proposed)    View

Page 1509 of 20943, showing 5 records out of 104715 total, starting on record 7541, ending on 7545

Actions