CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7951  CVE-2003-1127  Candidate  Whale Communications e-Gap 2.5 on Windows 2000 allows remote attackers to obtain the source code for the login page via the HTTP TRACE method, which bypasses the preprocessor.  Assigned (20050312)  None (candidate not yet proposed)    View
73487  CVE-2014-6188  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in IBM WebSphere Service Registry and Repository (WSRR) 6.3.x before 6.3.0.5, 7.0.x through 7.0.0.5, 7.5.x before 7.5.0.3, and 8.0.x before 8.0.0.2 allow remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20140902)  None (candidate not yet proposed)    View
8207  CVE-2003-1383  Candidate  WEB-ERP 0.1.4 and earlier allows remote attackers to obtain sensitive information via an HTTP request for the logicworks.ini file, which contains the MySQL database username and password.  Assigned (20071018)  None (candidate not yet proposed)    View
73743  CVE-2014-6443  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140916)  None (candidate not yet proposed)    View
73999  CVE-2014-6699  Candidate  The Weather Channel (aka com.weather.Weather) application 5.2.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140919)  None (candidate not yet proposed)    View

Page 1816 of 20943, showing 5 records out of 104715 total, starting on record 9076, ending on 9080

Actions