CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6655  CVE-2002-2273  Candidate  Cross-site scripting (XSS) vulnerability in Webster HTTP Server allows remote attackers to inject arbitrary web script or HTML via the URL.  Assigned (20071017)  None (candidate not yet proposed)    View
72191  CVE-2014-4894  Candidate  The MyMetro (aka com.myrippleapps.mymetro) application 2.4.7 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140710)  None (candidate not yet proposed)    View
72447  CVE-2014-5150  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140730)  None (candidate not yet proposed)    View
7167  CVE-2003-0339  Candidate  Multiple heap-based buffer overflows in WsMp3 daemon (WsMp3d) 0.0.10 and earlier allow remote attackers to execute arbitrary code via long HTTP requests.  Assigned (20030522)  None (candidate not yet proposed)    View
72703  CVE-2014-5406  Candidate  The Hospira LifeCare PCA Infusion System before 7.0 does not validate network traffic associated with sending a (1) drug library, (2) software update, or (3) configuration change, which allows remote attackers to modify settings or medication data via packets on the (a) TELNET, (b) HTTP, (c) HTTPS, or (d) UPNP port. NOTE: this issue might overlap CVE-2015-3459.  Assigned (20140822)  None (candidate not yet proposed)    View

Page 19713 of 20943, showing 5 records out of 104715 total, starting on record 98561, ending on 98565

Actions