CVE List

Id CVE No. Status Description Phase Votes Comments Actions
74502  CVE-2014-7202  Candidate  stream_engine.cpp in libzmq (aka ZeroMQ/C++)) 4.0.5 before 4.0.5 allows man-in-the-middle attackers to conduct downgrade attacks via a crafted connection request.  Assigned (20140926)  None (candidate not yet proposed)    View
9222  CVE-2004-0794  Candidate  Multiple signal handler race conditions in lukemftpd (aka tnftpd before 20040810) allow remote authenticated attackers to cause a denial of service or execute arbitrary code.  Assigned (20040817)  None (candidate not yet proposed)    View
74758  CVE-2014-7457  Candidate  The Electronics For You (aka com.magzter.electronicsforyou) application 3.02 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9478  CVE-2004-1050  Candidate  Heap-based buffer overflow in Internet Explorer 6 allows remote attackers to execute arbitrary code via long (1) SRC or (2) NAME attributes in IFRAME, FRAME, and EMBED elements, as originally discovered using the mangleme utility, aka "the IFRAME vulnerability" or the "HTML Elements Vulnerability."  Assigned (20041117)  None (candidate not yet proposed)    View
75014  CVE-2014-7713  Candidate  The Skin&Ink Magazine (aka com.triactivemedia.skinandink) application @7F08017A for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View

Page 1634 of 20943, showing 5 records out of 104715 total, starting on record 8166, ending on 8170

Actions