CVE List

Id CVE No. Status Description Phase Votes Comments Actions
71690  CVE-2014-4394  Candidate  An unspecified integrated graphics driver routine in the Intel Graphics Driver subsystem in Apple OS X before 10.9.5 does not properly validate calls, which allows attackers to execute arbitrary code in a privileged context via a crafted application, a different vulnerability than CVE-2014-4395, CVE-2014-4396, CVE-2014-4397, CVE-2014-4398, CVE-2014-4399, CVE-2014-4400, CVE-2014-4401, and CVE-2014-4416.  Assigned (20140620)  None (candidate not yet proposed)    View
6410  CVE-2002-2028  Candidate  The screensaver on Windows NT 4.0, 2000, XP, and 2002 does not verify if a domain account has already been locked when a valid password is provided, which makes it easier for users with physical access to conduct brute force password guessing.  Assigned (20050714)  None (candidate not yet proposed)    View
71946  CVE-2014-4649  Candidate  SQL injection vulnerability in the photo-edit subsystem in Piwigo 2.6.x and 2.7.x before 2.7.0beta2 allows remote authenticated administrators to execute arbitrary SQL commands via the associate[] field.  Assigned (20140625)  None (candidate not yet proposed)    View
6666  CVE-2002-2284  Candidate  Netscape Communicator 4.0 through 4.79 allows remote attackers to bypass JVM security and execute arbitrary Java code via an applet that loads user-supplied Java classes.  Assigned (20071017)  None (candidate not yet proposed)    View
72202  CVE-2014-4905  Candidate  The Clean Internet Browser (aka com.cleantab.browsesecure) application 1.36 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140710)  None (candidate not yet proposed)    View

Page 1938 of 20943, showing 5 records out of 104715 total, starting on record 9686, ending on 9690

Actions