CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
72680 | CVE-2014-5383 | Candidate | SQL injection vulnerability in AlienVault OSSIM before 4.7.0 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors. | Assigned (20140821) | None (candidate not yet proposed) | View | |
7400 | CVE-2003-0573 | Candidate | The DNS callbacks in nsd in SGI IRIX 6.5.x through 6.5.20f, and possibly earlier versions, do not perform sufficient sanity checking, with unknown impact. | Assigned (20030716) | None (candidate not yet proposed) | View | |
72936 | CVE-2014-5638 | Candidate | The Huntington Mobile (aka com.huntington.m) application 2.1.222 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | Assigned (20140830) | None (candidate not yet proposed) | View | |
7656 | CVE-2003-0832 | Candidate | Directory traversal vulnerability in webfs before 1.20 allows remote attackers to read arbitrary files via .. (dot dot) sequences in a Hostname header. | Assigned (20030926) | None (candidate not yet proposed) | View | |
73192 | CVE-2014-5894 | Candidate | The AireTalk: Text, Call, & More! (aka com.pingshow.amper) application 2.0.73 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | Assigned (20140830) | None (candidate not yet proposed) | View |
Page 19030 of 20943, showing 5 records out of 104715 total, starting on record 95146, ending on 95150