CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7138  CVE-2003-0310  Candidate  Cross-site scripting (XSS) vulnerability in articleview.php for eZ publish 2.2 allows remote attackers to insert arbitrary web script.  Assigned (20030516)  None (candidate not yet proposed)    View
72674  CVE-2014-5377  Candidate  ReadUsersFromMasterServlet in ManageEngine DeviceExpert before 5.9 build 5981 allows remote attackers to obtain user account credentials via a direct request.  Assigned (20140820)  None (candidate not yet proposed)    View
7394  CVE-2003-0567  Candidate  Cisco IOS 11.x and 12.0 through 12.2 allows remote attackers to cause a denial of service (traffic block) by sending a particular sequence of IPv4 packets to an interface on the device, causing the input queue on that interface to be marked as full.  Assigned (20030716)  None (candidate not yet proposed)    View
72930  CVE-2014-5632  Candidate  The Mega Jump (aka com.getsetgames.megajump) application @7F080002 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7650  CVE-2003-0826  Candidate  lsh daemon (lshd) does not properly return from certain functions in (1) read_line.c, (2) channel_commands.c, or (3) client_keyexchange.c when long input is provided, which could allow remote attackers to execute arbitrary code via a heap-based buffer overflow attack.  Assigned (20030919)  None (candidate not yet proposed)    View

Page 18600 of 20943, showing 5 records out of 104715 total, starting on record 92996, ending on 93000

Actions