CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
7138 | CVE-2003-0310 | Candidate | Cross-site scripting (XSS) vulnerability in articleview.php for eZ publish 2.2 allows remote attackers to insert arbitrary web script. | Assigned (20030516) | None (candidate not yet proposed) | View | |
72674 | CVE-2014-5377 | Candidate | ReadUsersFromMasterServlet in ManageEngine DeviceExpert before 5.9 build 5981 allows remote attackers to obtain user account credentials via a direct request. | Assigned (20140820) | None (candidate not yet proposed) | View | |
7394 | CVE-2003-0567 | Candidate | Cisco IOS 11.x and 12.0 through 12.2 allows remote attackers to cause a denial of service (traffic block) by sending a particular sequence of IPv4 packets to an interface on the device, causing the input queue on that interface to be marked as full. | Assigned (20030716) | None (candidate not yet proposed) | View | |
72930 | CVE-2014-5632 | Candidate | The Mega Jump (aka com.getsetgames.megajump) application @7F080002 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | Assigned (20140830) | None (candidate not yet proposed) | View | |
7650 | CVE-2003-0826 | Candidate | lsh daemon (lshd) does not properly return from certain functions in (1) read_line.c, (2) channel_commands.c, or (3) client_keyexchange.c when long input is provided, which could allow remote attackers to execute arbitrary code via a heap-based buffer overflow attack. | Assigned (20030919) | None (candidate not yet proposed) | View |
Page 18600 of 20943, showing 5 records out of 104715 total, starting on record 92996, ending on 93000