CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7660  CVE-2003-0836  Candidate  Stack-based buffer overflow in IBM DB2 Universal Data Base 7.2 before Fixpak 10 and 10a, and 8.1 before Fixpak 2, allows attackers with "Connect" privileges to execute arbitrary code via a LOAD command.  Assigned (20030929)  None (candidate not yet proposed)    View
73196  CVE-2014-5898  Candidate  The Heavy Duty Truck Driver Simulator 3D (aka com.oas.heavy.duty.truck.driver.simulator3d) application 1.0.5 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7916  CVE-2003-1092  Candidate  Unknown vulnerability in the "Automatic File Content Type Recognition (AFCTR) Tool version of the file package before 3.41, related to "a memory allocation problem," has unknown impact.  Assigned (20050310)  None (candidate not yet proposed)    View
73452  CVE-2014-6153  Candidate  The Web UI in IBM WebSphere Service Registry and Repository (WSRR) 6.3.x through 6.3.0.5, 7.0.x through 7.0.0.5, 7.5.x through 7.5.0.4, 8.0.x before 8.0.0.3, and 8.5.x before 8.5.0.1 does not set the secure flag for a cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session.  Assigned (20140902)  None (candidate not yet proposed)    View
8172  CVE-2003-1348  Candidate  Cross-site scripting (XSS) vulnerability in guestbook.cgi in ftls.org Guestbook 1.1 allows remote attackers to inject arbitrary web script or HTML via the (1) comment, (2) name, or (3) title field.  Assigned (20071014)  None (candidate not yet proposed)    View

Page 19373 of 20943, showing 5 records out of 104715 total, starting on record 96861, ending on 96865

Actions