CVE List

Id CVE No. Status Description Phase Votes Comments Actions
72688  CVE-2014-5391  Candidate  Cross-site scripting (XSS) vulnerability in the JobScheduler Operations Center (JOC) in SOS JobScheduler before 1.6.4246 and 1.7.x before 1.7.4241 allows remote attackers to inject arbitrary web script or HTML via the hash property (location.hash).  Assigned (20140822)  None (candidate not yet proposed)    View
7408  CVE-2003-0581  Candidate  X Fontserver for Truetype fonts (xfstt) 1.4 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a (1) FS_QueryXExtents8 or (2) FS_QueryXBitmaps8 packet, and possibly other types of packets, with a large num_ranges value, which causes an out-of-bounds array access.  Assigned (20030717)  None (candidate not yet proposed)    View
72944  CVE-2014-5646  Candidate  The AMC Security- Antivirus, Clean (aka com.iobit.mobilecare) application 4.4.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7664  CVE-2003-0840  Candidate  Buffer overflow in dtprintinfo on HP-UX 11.00, and possibly other operating systems, allows local users to gain root privileges via a long DISPLAY environment variable.  Assigned (20031008)  None (candidate not yet proposed)    View
73200  CVE-2014-5902  Candidate  The UA Cinemas - Mobile ticketing (aka com.mtel.uacinemaapps) application 2.9 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View

Page 19069 of 20943, showing 5 records out of 104715 total, starting on record 95341, ending on 95345

Actions