CVE List

Id CVE No. Status Description Phase Votes Comments Actions
72690  CVE-2014-5393  Candidate  Directory traversal vulnerability in the JobScheduler Operations Center (JOC) in SOS JobScheduler before 1.6.4246 and 1.7.x before 1.7.4241 allows remote authenticated users with the info permission to read arbitrary files in the webroot via unspecified vectors.  Assigned (20140822)  None (candidate not yet proposed)    View
7410  CVE-2003-0583  Candidate  Buffer overflow in Backup and Restore Utility for Unix (BRU) 17.0 and earlier, when running setuid, allows local users to execute arbitrary code via a long command line argument.  Assigned (20030717)  None (candidate not yet proposed)    View
72946  CVE-2014-5648  Candidate  The Chat, Flirt & Dating Heart JAUMO (aka com.jaumo) application 2.7.5 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7666  CVE-2003-0842  Candidate  Stack-based buffer overflow in mod_gzip_printf for mod_gzip 1.3.26.1a and earlier, and possibly later official versions, when running in debug mode, allows remote attackers to execute arbitrary code via a long filename in a GET request with an "Accept-Encoding: gzip" header.  Assigned (20031008)  None (candidate not yet proposed)    View
73202  CVE-2014-5904  Candidate  The MiniInTheBox Online Shopping (aka com.miniinthebox.android) application 2.0.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View

Page 19835 of 20943, showing 5 records out of 104715 total, starting on record 99171, ending on 99175

Actions