CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8945  CVE-2004-0517  Candidate  Unknown vulnerability in Mac OS X 10.3.4, related to "handling of process IDs during package installation," a different vulnerability than CVE-2004-0516.  Assigned (20040601)  None (candidate not yet proposed)    View
74481  CVE-2014-7181  Candidate  Cross-site scripting (XSS) vulnerability in the Max Foundry MaxButtons plugin before 1.26.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the id parameter in a button action on the maxbuttons-controller page to wp-admin/admin.php, related to the button creation page.  Assigned (20140925)  None (candidate not yet proposed)    View
9201  CVE-2004-0773  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20040809)  None (candidate not yet proposed)    View
74737  CVE-2014-7436  Candidate  The SOS recette (aka com.sos.recette) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9457  CVE-2004-1029  Candidate  The Sun Java Plugin capability in Java 2 Runtime Environment (JRE) 1.4.2_01, 1.4.2_04, and possibly earlier versions, does not properly restrict access between Javascript and Java applets during data transfer, which allows remote attackers to load unsafe classes and execute arbitrary code by using the reflection API to access private Java packages.  Assigned (20041112)  None (candidate not yet proposed)    View

Page 19754 of 20943, showing 5 records out of 104715 total, starting on record 98766, ending on 98770

Actions