CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
71677 | CVE-2014-4381 | Candidate | Libnotify in Apple iOS before 8 and Apple TV before 7 lacks proper bounds checking on write operations, which allows attackers to execute arbitrary code as root via a crafted application. | Assigned (20140620) | None (candidate not yet proposed) | View | |
6397 | CVE-2002-2015 | Candidate | PHP file inclusion vulnerability in user.php in PostNuke 0.703 allows remote attackers to include arbitrary files and possibly execute code via the caselist parameter. | Assigned (20050714) | None (candidate not yet proposed) | View | |
71933 | CVE-2014-4636 | Candidate | Cross-site request forgery (CSRF) vulnerability in EMC Documentum Web Development Kit (WDK) before 6.8 allows remote attackers to hijack the authentication of arbitrary users for requests that perform Docbase operations. | Assigned (20140624) | None (candidate not yet proposed) | View | |
6653 | CVE-2002-2271 | Candidate | Buffer overflow in BigFun 1.51b IRC client, when the Direct Client Connection (DCC) option is used, allows remote attackers to cause a denial of service (crash) via a long string. | Assigned (20071017) | None (candidate not yet proposed) | View | |
72189 | CVE-2014-4892 | Candidate | The uControl Smart Home Automation (aka de.ucontrol) application 1.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | Assigned (20140710) | None (candidate not yet proposed) | View |
Page 20102 of 20943, showing 5 records out of 104715 total, starting on record 100506, ending on 100510