CVE List

Id CVE No. Status Description Phase Votes Comments Actions
72433  CVE-2014-5136  Candidate  Cross-site scripting (XSS) vulnerability in Innovative Interfaces Sierra Library Services Platform 1.2_3 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.  Assigned (20140730)  None (candidate not yet proposed)    View
7153  CVE-2003-0325  Candidate  Buffer overflow in Maelstrom 3.0.6, 3.0.5, and earlier allows local users to execute arbitrary code via a long -server command line argument.  Assigned (20030519)  None (candidate not yet proposed)    View
72689  CVE-2014-5392  Candidate  XML External Entity (XXE) vulnerability in JobScheduler before 1.6.4246 and 7.x before 1.7.4241 allows remote attackers to cause a denial of service and read arbitrary files or directories via a request containing an XML external entity declaration in conjunction with an entity reference.  Assigned (20140822)  None (candidate not yet proposed)    View
7409  CVE-2003-0582  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2003-0504. Reason: This candidate is a duplicate of CVE-2003-0504. Notes: All CVE users should reference CVE-2003-0504 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20030717)  None (candidate not yet proposed)    View
72945  CVE-2014-5647  Candidate  The ISL Light Remote Desktop (aka com.islonline.isllight.mobile.android) application 2.1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View

Page 19149 of 20943, showing 5 records out of 104715 total, starting on record 95741, ending on 95745

Actions