CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8419  CVE-2003-1595  Candidate  NWFTPD.nlm before 5.04.05 in the FTP server in Novell NetWare 6.5 does not properly perform "intruder detection," which has unspecified impact and attack vectors.  Assigned (20100405)  None (candidate not yet proposed)    View
73955  CVE-2014-6655  Candidate  The Tortoise Forum (aka org.tortoiseforum.android.forumrunner) application 3.5.16 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140919)  None (candidate not yet proposed)    View
8675  CVE-2004-0247  Candidate  The client and server of Chaser 1.50 and earlier allow remote attackers to cause a denial of service (crash via exception) via a UDP packet with a length field that is greater than the actual data length, which causes Chaser to read unexpected memory.  Proposed (20040318)  NOOP(4) Armstrong, Cole, Cox, Wall    View
74211  CVE-2014-6911  Candidate  The diziturky HD 2015 (aka com.adv.diziturky) application 2014 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140919)  None (candidate not yet proposed)    View
8931  CVE-2004-0503  Candidate  Microsoft Outlook 2003 allows remote attackers to bypass the default zone restrictions and execute script within media files via a Rich Text Format (RTF) message containing an OLE object for the Windows Media Player, which bypasses Media Player"s setting to disallow scripting and may lead to unprompted installation of an executable when exploited in conjunction with predictable-file-location exposures such as CVE-2004-0502.  Assigned (20040527)  None (candidate not yet proposed)    View

Page 18647 of 20943, showing 5 records out of 104715 total, starting on record 93231, ending on 93235

Actions