CVE List

Id CVE No. Status Description Phase Votes Comments Actions
74737  CVE-2014-7436  Candidate  The SOS recette (aka com.sos.recette) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9457  CVE-2004-1029  Candidate  The Sun Java Plugin capability in Java 2 Runtime Environment (JRE) 1.4.2_01, 1.4.2_04, and possibly earlier versions, does not properly restrict access between Javascript and Java applets during data transfer, which allows remote attackers to load unsafe classes and execute arbitrary code by using the reflection API to access private Java packages.  Assigned (20041112)  None (candidate not yet proposed)    View
74993  CVE-2014-7692  Candidate  The Lent Experience (aka com.wLentExperience) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9713  CVE-2004-1285  Candidate  Buffer overflow in the get_header function in asf_mmst_streaming.c for MPlayer 1.0pre5 allows remote attackers to execute arbitrary code via a crafted ASF video stream.  Assigned (20041220)  None (candidate not yet proposed)    View
75249  CVE-2014-7948  Candidate  The AppCacheUpdateJob::URLFetcher::OnResponseStarted function in content/browser/appcache/appcache_update_job.cc in Google Chrome before 40.0.2214.91 proceeds with AppCache caching for SSL sessions even if there is an X.509 certificate error, which allows man-in-the-middle attackers to spoof HTML5 application content via a crafted certificate.  Assigned (20141006)  None (candidate not yet proposed)    View

Page 19763 of 20943, showing 5 records out of 104715 total, starting on record 98811, ending on 98815

Actions