CVE List

Id CVE No. Status Description Phase Votes Comments Actions
72428  CVE-2014-5131  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140730)  None (candidate not yet proposed)    View
7148  CVE-2003-0320  Candidate  header.php in ttCMS 2.3 and earlier allows remote attackers to inject arbitrary PHP code by setting the ttcms_user_admin parameter to "1" and modifying the admin_root parameter to point to a URL that contains a Trojan horse header.inc.php script.  Assigned (20030519)  None (candidate not yet proposed)    View
72684  CVE-2014-5387  Candidate  Multiple SQL injection vulnerabilities in EllisLab ExpressionEngine before 2.9.1 allow remote authenticated users to execute arbitrary SQL commands via the (1) column_filter or (2) category[] parameter to system/index.php or the (3) tbl_sort[0][] parameter in the comment module to system/index.php.  Assigned (20140822)  None (candidate not yet proposed)    View
7404  CVE-2003-0577  Candidate  mpg123 0.59r allows remote attackers to cause a denial of service and possibly execute arbitrary code via an MP3 file with a zero bitrate, which creates a negative frame size.  Assigned (20030716)  None (candidate not yet proposed)    View
72940  CVE-2014-5642  Candidate  The IMPI Mobile Security (aka com.impi) application 2.1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View

Page 19372 of 20943, showing 5 records out of 104715 total, starting on record 96856, ending on 96860

Actions