CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8200  CVE-2003-1376  Candidate  WinZip 8.0 uses weak random number generation for password protected ZIP files, which allows local users to brute force the encryption keys and extract the data from the zip file by guessing the state of the stream coder.  Assigned (20071018)  None (candidate not yet proposed)    View
73736  CVE-2014-6436  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140916)  None (candidate not yet proposed)    View
73992  CVE-2014-6692  Candidate  The Kingsoft Clip (Office Tool) (aka cn.wps.clip) application 1.5.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140919)  None (candidate not yet proposed)    View
74248  CVE-2014-6948  Candidate  The TH3 professional Al Mohtarif (aka com.th3professional.almohtarif) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140919)  None (candidate not yet proposed)    View
8968  CVE-2004-0540  Candidate  Microsoft Windows 2000, when running in a domain whose Fully Qualified Domain Name (FQDN) is exactly 8 characters long, does not prevent users with expired passwords from logging on to the domain.  Assigned (20040604)  None (candidate not yet proposed)    View

Page 1787 of 20943, showing 5 records out of 104715 total, starting on record 8931, ending on 8935

Actions