CVE List

Id CVE No. Status Description Phase Votes Comments Actions
6137  CVE-2002-1755  Candidate  tinc 1.0pre3 and 1.0pre4 VPN does not authenticate forwarded packets, which allows remote attackers to inject data into user sessions without detection, and possibly control the data contents via cut-and-paste attacks on CBC.  Assigned (20050621)  None (candidate not yet proposed)    View
71673  CVE-2014-4377  Candidate  Integer overflow in CoreGraphics in Apple iOS before 8 and Apple TV before 7 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PDF document.  Assigned (20140620)  None (candidate not yet proposed)    View
6393  CVE-2002-2011  Candidate  Cross-site scripting (XSS) vulnerability in the fom CGI program (fom.cgi) in Faq-O-Matic 2.711 and 2.712 allows remote attackers to inject arbitrary web script or HTML via the file parameter.  Assigned (20050714)  None (candidate not yet proposed)    View
71929  CVE-2014-4632  Candidate  VMware vSphere Data Protection (VDP) 5.1, 5.5 before 5.5.9, and 5.8 before 5.8.1 and the proxy client in EMC Avamar Data Store (ADS) and Avamar Virtual Edition (AVE) 6.x and 7.0.x do not properly verify X.509 certificates from vCenter Server SSL servers, which allows man-in-the-middle attackers to spoof servers, and bypass intended backup and restore access restrictions, via a crafted certificate.  Assigned (20140624)  None (candidate not yet proposed)    View
6649  CVE-2002-2267  Candidate  bogopass in bogofilter 0.9.0.4 allows local users to overwrite arbitrary files via a symlink attack on the bogopass temporary file.  Assigned (20071017)  None (candidate not yet proposed)    View

Page 19783 of 20943, showing 5 records out of 104715 total, starting on record 98911, ending on 98915

Actions