CVE List

Id CVE No. Status Description Phase Votes Comments Actions
71660  CVE-2014-4364  Candidate  The 802.1X subsystem in Apple iOS before 8 and Apple TV before 7 does not require strong authentication methods, which allows remote attackers to calculate credentials by offering LEAP authentication from a crafted Wi-Fi AP and then performing a cryptographic attack against the MS-CHAPv1 hash.  Assigned (20140620)  None (candidate not yet proposed)    View
6380  CVE-2002-1998  Candidate  Buffer overflow in rpc.cmsd in SCO UnixWare 7.1.1 and Open UNIX 8.0.0 allows remote attackers to execute arbitrary commands via a long parameter to rtable_create (procedure 21).  Assigned (20050714)  None (candidate not yet proposed)    View
71916  CVE-2014-4619  Candidate  EMC RSA Identity Management and Governance (IMG) 6.5.x before 6.5.1 P11, 6.5.2 before P02HF01, and 6.8.x before 6.8.1 P07, when Novell Identity Manager (aka NovellIM) is used, allows remote attackers to bypass authentication via an arbitrary valid username.  Assigned (20140624)  None (candidate not yet proposed)    View
6636  CVE-2002-2254  Candidate  The experimental IP packet queuing feature in Netfilter / IPTables in Linux kernel 2.4 up to 2.4.19 and 2.5 up to 2.5.31, when a privileged process exits and network traffic is not being queued, may allow a later process with the same Process ID (PID) to access certain network traffic that would otherwise be restricted.  Assigned (20071014)  None (candidate not yet proposed)    View
72172  CVE-2014-4875  Candidate  CreateBossCredentials.jar in Toshiba CHEC before 6.6 build 4014 and 6.7 before build 4329 contains a hardcoded AES key, which allows attackers to discover Back Office System Server (BOSS) DB2 database credentials by leveraging knowledge of this key in conjunction with bossinfo.pro read access.  Assigned (20140710)  None (candidate not yet proposed)    View

Page 19371 of 20943, showing 5 records out of 104715 total, starting on record 96851, ending on 96855

Actions