CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
72468 | CVE-2014-5171 | Candidate | SAP HANA Extend Application Services (XS) does not encrypt transmissions for applications that enable form based authentication using SSL, which allows remote attackers to obtain credentials and other sensitive information by sniffing the network. | Assigned (20140731) | None (candidate not yet proposed) | View | |
7188 | CVE-2003-0360 | Candidate | Multiple buffer overflows in gPS before 1.0.0 allow attackers to cause a denial of service and possibly execute arbitrary code. | Assigned (20030529) | None (candidate not yet proposed) | View | |
72724 | CVE-2014-5427 | Candidate | Johnson Controls Metasys 4.1 through 6.5, as used in Application and Data Server (ADS), Extended Application and Data Server (aka ADX), LonWorks Control Server 85 LCS8520, Network Automation Engine (NAE) 55xx-x, Network Integration Engine (NIE) 5xxx-x, and NxE8500, allows remote attackers to read password hashes via a POST request. | Assigned (20140822) | None (candidate not yet proposed) | View | |
7444 | CVE-2003-0617 | Candidate | mindi 0.58 and earlier does not properly create temporary files, which allows local users to overwrite arbitrary files. | Assigned (20030730) | None (candidate not yet proposed) | View | |
72980 | CVE-2014-5682 | Candidate | The Retale - Weekly Ads & Deals (aka com.retale.android) application 2.1.3 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | Assigned (20140830) | None (candidate not yet proposed) | View |
Page 1600 of 20943, showing 5 records out of 104715 total, starting on record 7996, ending on 8000