CVE List

Id CVE No. Status Description Phase Votes Comments Actions
72706  CVE-2014-5409  Candidate  The 17046 Ethernet card before 94450214LFMT100SEM-L.R3-CL for the GE Digital Energy Hydran M2 does not properly generate random values for TCP Initial Sequence Numbers (ISNs), which makes it easier for remote attackers to spoof packets by predicting these values.  Assigned (20140822)  None (candidate not yet proposed)    View
7426  CVE-2003-0599  Candidate  Unknown vulnerability in the Virtual File System (VFS) capability for phpGroupWare 0.9.16preRC and versions before 0.9.14.004 with unknown implications, related to the VFS path being under the web document root.  Assigned (20030721)  None (candidate not yet proposed)    View
72962  CVE-2014-5664  Candidate  The Spider Solitaire (aka com.mobilityware.spider) application 3.0.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7682  CVE-2003-0858  Candidate  Zebra 0.93b and earlier, and quagga before 0.95, allows local users to cause a denial of service by sending spoofed messages as other users to the kernel netlink interface.  Assigned (20031010)  None (candidate not yet proposed)    View
73218  CVE-2014-5919  Candidate  The SurDoc - 100GB+ FREE storage (aka com.jd.surdoc) application 1.3.4.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View

Page 199 of 20943, showing 5 records out of 104715 total, starting on record 991, ending on 995

Actions