CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
71925 | CVE-2014-4628 | Candidate | Cross-site scripting (XSS) vulnerability in EMC Isilon InsightIQ 2.x and 3.x before 3.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20140624) | None (candidate not yet proposed) | View | |
6645 | CVE-2002-2263 | Candidate | The installation program for HP-UX Visualize Conference B.11.00.11 running on HP-UX 11.00 and 11.11 installs /etc/dt and its subdirecties with insecure permissions, which allows local users to read or write arbitrary files. | Assigned (20071017) | None (candidate not yet proposed) | View | |
72181 | CVE-2014-4884 | Candidate | The Conrad Hotel (aka com.wConradHotel) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | Assigned (20140710) | None (candidate not yet proposed) | View | |
6901 | CVE-2003-0072 | Candidate | The Key Distribution Center (KDC) in Kerberos 5 (krb5) 1.2.7 and earlier allows remote, authenticated attackers to cause a denial of service (crash) on KDCs within the same realm using a certain protocol request that causes an out-of-bounds read of an array (aka "array overrun"). | Assigned (20030204) | NOOP(1) Christey | Christey> MANDRAKE:MDKSA-2003:043 | (as suggested by Vincent Danen of Mandrake) | View |
72437 | CVE-2014-5140 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20140730) | None (candidate not yet proposed) | View |
Page 20077 of 20943, showing 5 records out of 104715 total, starting on record 100381, ending on 100385