CVE List

Id CVE No. Status Description Phase Votes Comments Actions
73966  CVE-2014-6666  Candidate  The Baglamukhi (aka com.wshribaglamukhiblog) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140919)  None (candidate not yet proposed)    View
8686  CVE-2004-0258  Candidate  Multiple buffer overflows in RealOne Player, RealOne Player 2.0, RealOne Enterprise Desktop, and RealPlayer Enterprise allow remote attackers to execute arbitrary code via malformed (1) .RP, (2) .RT, (3) .RAM, (4) .RPM or (5) .SMIL files.  Proposed (20040318)  ACCEPT(4) Armstrong, Baker, Cole, Wall | NOOP(1) Cox    View
74222  CVE-2014-6922  Candidate  The KFAI Community Radio (aka com.skyblue.pra.kfai) application 2.0.4 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140919)  None (candidate not yet proposed)    View
8942  CVE-2004-0514  Candidate  Unknown vulnerability in LoginWindow for Mac OS X 10.3.4, related to "handling of directory services lookups."  Assigned (20040601)  None (candidate not yet proposed)    View
74478  CVE-2014-7178  Candidate  Enalean Tuleap before 7.5.99.6 allows remote attackers to execute arbitrary commands via the User-Agent header, which is provided to the passthru PHP function.  Assigned (20140925)  None (candidate not yet proposed)    View

Page 18912 of 20943, showing 5 records out of 104715 total, starting on record 94556, ending on 94560

Actions