CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7662  CVE-2003-0838  Candidate  Internet Explorer allows remote attackers to bypass zone restrictions to inject and execute arbitrary programs by creating a popup window and inserting ActiveX object code with a "data" tag pointing to the malicious code, which Internet Explorer treats as HTML or Javascript, but later executes as an HTA application, a different vulnerability than CVE-2003-0532, and as exploited using the QHosts Trojan horse (aka Trojan.Qhosts, QHosts-1, VBS.QHOSTS, or aolfix.exe).  Assigned (20031002)  None (candidate not yet proposed)    View
73198  CVE-2014-5900  Candidate  The myHomework Student Planner (aka com.myhomeowork) application 3.0.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7918  CVE-2003-1094  Candidate  BEA WebLogic Server and Express version 7.0 SP3 may follow certain code execution paths that result in an incorrect current user, such as in the frequent use of JNDI initial contexts, which could allow remote authenticated users to gain privileges.  Assigned (20050310)  None (candidate not yet proposed)    View
73454  CVE-2014-6155  Candidate  Multiple directory traversal vulnerabilities in the ServiceRegistry UI in IBM WebSphere Service Registry and Repository (WSRR) 7.5.x through 7.5.0.4, 8.0.x before 8.0.0.3, and 8.5.x before 8.5.0.1 allow remote authenticated users to read arbitrary files via unspecified vectors.  Assigned (20140902)  None (candidate not yet proposed)    View
8174  CVE-2003-1350  Candidate  List Site Pro 2.0 allows remote attackers to hijack user accounts by inserting a "|" (pipe), which is used as a field delimiter, into the bannerurl field.  Assigned (20071014)  None (candidate not yet proposed)    View

Page 19141 of 20943, showing 5 records out of 104715 total, starting on record 95701, ending on 95705

Actions