CVE List

Id CVE No. Status Description Phase Votes Comments Actions
72680  CVE-2014-5383  Candidate  SQL injection vulnerability in AlienVault OSSIM before 4.7.0 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.  Assigned (20140821)  None (candidate not yet proposed)    View
7400  CVE-2003-0573  Candidate  The DNS callbacks in nsd in SGI IRIX 6.5.x through 6.5.20f, and possibly earlier versions, do not perform sufficient sanity checking, with unknown impact.  Assigned (20030716)  None (candidate not yet proposed)    View
72936  CVE-2014-5638  Candidate  The Huntington Mobile (aka com.huntington.m) application 2.1.222 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7656  CVE-2003-0832  Candidate  Directory traversal vulnerability in webfs before 1.20 allows remote attackers to read arbitrary files via .. (dot dot) sequences in a Hostname header.  Assigned (20030926)  None (candidate not yet proposed)    View
73192  CVE-2014-5894  Candidate  The AireTalk: Text, Call, & More! (aka com.pingshow.amper) application 2.0.73 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View

Page 19030 of 20943, showing 5 records out of 104715 total, starting on record 95146, ending on 95150

Actions