CVE List

Id CVE No. Status Description Phase Votes Comments Actions
72716  CVE-2014-5419  Candidate  GE Multilink ML800, ML1200, ML1600, and ML2400 switches with firmware 4.2.1 and earlier and Multilink ML810, ML3000, and ML3100 switches with firmware 5.2.0 and earlier use the same RSA private key across different customers" installations, which makes it easier for remote attackers to obtain the cleartext content of network traffic by reading this key from a firmware image and then sniffing the network.  Assigned (20140822)  None (candidate not yet proposed)    View
7436  CVE-2003-0609  Candidate  Stack-based buffer overflow in the runtime linker, ld.so.1, on Solaris 2.6 through 9 allows local users to gain root privileges via a long LD_PRELOAD environment variable.  Assigned (20030728)  None (candidate not yet proposed)    View
72972  CVE-2014-5674  Candidate  The PicsArt - Photo Studio (aka com.picsart.studio) application 4.5.5 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7692  CVE-2003-0868  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20031016)  None (candidate not yet proposed)    View
73228  CVE-2014-5929  Candidate  The emartmall (aka kr.co.emart.emartmall) application 1.3.3 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View

Page 1577 of 20943, showing 5 records out of 104715 total, starting on record 7881, ending on 7885

Actions