CVE List

Id CVE No. Status Description Phase Votes Comments Actions
72945  CVE-2014-5647  Candidate  The ISL Light Remote Desktop (aka com.islonline.isllight.mobile.android) application 2.1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7665  CVE-2003-0841  Candidate  The grid option in PeopleSoft 8.42 stores temporary .xls files in guessable directories under the web document root, which allows remote attackers to steal search results by directly accessing the files via a URL request.  Assigned (20031008)  None (candidate not yet proposed)    View
73201  CVE-2014-5903  Candidate  The Mobile@Work (aka com.mobileiron) application 6.0.0.1.12R for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7921  CVE-2003-1097  Candidate  Buffer overflow in rexec on HP-UX B.10.20, B.11.00, and B.11.04, when setuid root, may allow local users to gain privileges via a long -l option.  Assigned (20050311)  None (candidate not yet proposed)    View
73457  CVE-2014-6158  Candidate  Multiple directory traversal vulnerabilities in the file-upload feature in IBM PureApplication System 1.0 before 1.0.0.4 iFix 10, 1.1 before 1.1.0.5, and 2.0 before 2.0.0.1 and Workload Deployer 3.1.0.7 before IF5 allow remote authenticated users to execute arbitrary code via a (1) Script Package, (2) Add-On, or (3) Emergency Fixes component.  Assigned (20140902)  None (candidate not yet proposed)    View

Page 19752 of 20943, showing 5 records out of 104715 total, starting on record 98756, ending on 98760

Actions