CVE List

Id CVE No. Status Description Phase Votes Comments Actions
72938  CVE-2014-5640  Candidate  The CM Backup -Restore,Cloud,Photo (aka com.ijinshan.kbackup) application 1.1.0.135 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7658  CVE-2003-0834  Candidate  Buffer overflow in CDE libDtHelp library allows local users to execute arbitrary code via (1) a modified DTHELPUSERSEARCHPATH environment variable and the Help feature, (2) DTSEARCHPATH, or (3) LOGNAME.  Assigned (20030929)  None (candidate not yet proposed)    View
73194  CVE-2014-5896  Candidate  The GlobalTalk- free phone calls (aka com.seawolftech.globaltalk) application 2.1.4 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7914  CVE-2003-1090  Candidate  Buffer overflow in AbsoluteTelnet before 2.12 RC10 allows remote attackers to execute arbitrary code via a long window title.  Assigned (20050310)  None (candidate not yet proposed)    View
73450  CVE-2014-6151  Candidate  CRLF injection vulnerability in IBM Tivoli Integrated Portal (TIP) 2.2.x allows remote authenticated users to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.  Assigned (20140902)  None (candidate not yet proposed)    View

Page 19191 of 20943, showing 5 records out of 104715 total, starting on record 95951, ending on 95955

Actions