CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9460  CVE-2004-1032  Candidate  fcronsighup in Fcron 2.0.1, 2.9.4, and possibly earlier versions allows local users to delete arbitrary files or create arbitrary empty files via a target filename with a large number of leading slash (/) characters such that fcronsighup does not properly append the intended fcrontab.sig to the resulting string.  Assigned (20041112)  None (candidate not yet proposed)    View
74996  CVE-2014-7695  Candidate  The easaa Baoneng (aka com.easaa.baoneng) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9716  CVE-2004-1288  Candidate  Buffer overflow in the parse_html function in o3read.c for o3read 0.0.3 allows remote attackers to execute arbitrary code via a crafted SXW file.  Assigned (20041220)  None (candidate not yet proposed)    View
75252  CVE-2014-7951  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141007)  None (candidate not yet proposed)    View
9972  CVE-2004-1544  Candidate  Cross-site scripting (XSS) vulnerability in Search.jsp in JSPWiki 2.1.120-cvs and earlier allows remote attackers to execute arbitrary web script as other users via the query parameter.  Assigned (20050218)  None (candidate not yet proposed)    View

Page 19992 of 20943, showing 5 records out of 104715 total, starting on record 99956, ending on 99960

Actions