CVE List

Id CVE No. Status Description Phase Votes Comments Actions
72968  CVE-2014-5670  Candidate  The SAS: Zombie Assault 3 (aka com.ninjakiwi.sas3zombieassault) application 2.56 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7688  CVE-2003-0864  Candidate  Buffer overflow in m_join in channel.c for IRCnet IRCD 2.10.x to 2.10.3p3 allows remote attackers to cause a denial of service.  Assigned (20031013)  None (candidate not yet proposed)    View
73224  CVE-2014-5925  Candidate  The 10000 Kindle Books Downloads (aka com.ww10000KindleBooksLatestnBestSellers) application 0.312 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7944  CVE-2003-1120  Candidate  Race condition in SSH Tectia Server 4.0.3 and 4.0.4 for Unix, when the password change plugin (ssh-passwd-plugin) is enabled, allows local users to obtain the server"s private key.  Assigned (20050311)  None (candidate not yet proposed)    View
73480  CVE-2014-6181  Candidate  IBM WebSphere Service Registry and Repository (WSRR) 7.0.x before 7.0.0.5 does not perform access-control checks for contained objects, which allows remote authenticated users to obtain sensitive information via unspecified vectors.  Assigned (20140902)  None (candidate not yet proposed)    View

Page 1786 of 20943, showing 5 records out of 104715 total, starting on record 8926, ending on 8930

Actions