CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
7951 | CVE-2003-1127 | Candidate | Whale Communications e-Gap 2.5 on Windows 2000 allows remote attackers to obtain the source code for the login page via the HTTP TRACE method, which bypasses the preprocessor. | Assigned (20050312) | None (candidate not yet proposed) | View | |
73487 | CVE-2014-6188 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in IBM WebSphere Service Registry and Repository (WSRR) 6.3.x before 6.3.0.5, 7.0.x through 7.0.0.5, 7.5.x before 7.5.0.3, and 8.0.x before 8.0.0.2 allow remote authenticated users to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20140902) | None (candidate not yet proposed) | View | |
8207 | CVE-2003-1383 | Candidate | WEB-ERP 0.1.4 and earlier allows remote attackers to obtain sensitive information via an HTTP request for the logicworks.ini file, which contains the MySQL database username and password. | Assigned (20071018) | None (candidate not yet proposed) | View | |
73743 | CVE-2014-6443 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20140916) | None (candidate not yet proposed) | View | |
73999 | CVE-2014-6699 | Candidate | The Weather Channel (aka com.weather.Weather) application 5.2.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | Assigned (20140919) | None (candidate not yet proposed) | View |
Page 1816 of 20943, showing 5 records out of 104715 total, starting on record 9076, ending on 9080