CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9453  CVE-2004-1025  Candidate  Multiple heap-based buffer overflows in imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow remote attackers to cause a denial of service (application crash) and execute arbitrary code via certain image files.  Assigned (20041112)  None (candidate not yet proposed)    View
74989  CVE-2014-7688  Candidate  The Home Improvement (aka com.whomeimprovementapp) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9709  CVE-2004-1281  Candidate  The ftp_retr function in junkie 0.3.1 allows remote malicious FTP servers to overwrite arbitrary files via .. (dot dot) sequences in a filename.  Assigned (20041220)  None (candidate not yet proposed)    View
75245  CVE-2014-7944  Candidate  The sycc422_to_rgb function in fxcodec/codec/fx_codec_jpx_opj.cpp in PDFium, as used in Google Chrome before 40.0.2214.91, does not properly handle odd values of image width, which allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PDF document.  Assigned (20141006)  None (candidate not yet proposed)    View
9965  CVE-2004-1537  Candidate  Cross-site scripting (XSS) vulnerability in popup.php in PHPKIT 1.6.03 through 1.6.1 allows remote attackers to execute arbitrary web script via the img parameter.  Assigned (20050218)  None (candidate not yet proposed)    View

Page 18834 of 20943, showing 5 records out of 104715 total, starting on record 94166, ending on 94170

Actions