CVE List

Id CVE No. Status Description Phase Votes Comments Actions
73700  CVE-2014-6400  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140915)  None (candidate not yet proposed)    View
8420  CVE-2003-1596  Candidate  NWFTPD.nlm before 5.03.12 in the FTP server in Novell NetWare does not properly restrict filesystem use by anonymous users with NFS Gateway home directories, which allows remote attackers to bypass intended access restrictions via an FTP session.  Assigned (20100405)  None (candidate not yet proposed)    View
73956  CVE-2014-6656  Candidate  The drareym (aka com.drareym) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140919)  None (candidate not yet proposed)    View
8676  CVE-2004-0248  Candidate  Cross-site scripting vulnerability (XSS) in PHPX 3.2.3 allows remote attackers to execute arbitrary script as other users by injecting arbitrary HTML or script into (1) keywords argument of main.inc.php, (2) body argument of help.inc.php, or (3) the subject field in Personal Messages and Forum.  Modified (20050815)  ACCEPT(1) Cole | NOOP(3) Armstrong, Cox, Wall    View
74212  CVE-2014-6912  Candidate  The IRA"s 59th Annual Conference (aka com.coreapps.android.followme.ira_14) application 6.0.7.6 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140919)  None (candidate not yet proposed)    View

Page 18710 of 20943, showing 5 records out of 104715 total, starting on record 93546, ending on 93550

Actions