CVE List

Id CVE No. Status Description Phase Votes Comments Actions
71677  CVE-2014-4381  Candidate  Libnotify in Apple iOS before 8 and Apple TV before 7 lacks proper bounds checking on write operations, which allows attackers to execute arbitrary code as root via a crafted application.  Assigned (20140620)  None (candidate not yet proposed)    View
6397  CVE-2002-2015  Candidate  PHP file inclusion vulnerability in user.php in PostNuke 0.703 allows remote attackers to include arbitrary files and possibly execute code via the caselist parameter.  Assigned (20050714)  None (candidate not yet proposed)    View
71933  CVE-2014-4636  Candidate  Cross-site request forgery (CSRF) vulnerability in EMC Documentum Web Development Kit (WDK) before 6.8 allows remote attackers to hijack the authentication of arbitrary users for requests that perform Docbase operations.  Assigned (20140624)  None (candidate not yet proposed)    View
6653  CVE-2002-2271  Candidate  Buffer overflow in BigFun 1.51b IRC client, when the Direct Client Connection (DCC) option is used, allows remote attackers to cause a denial of service (crash) via a long string.  Assigned (20071017)  None (candidate not yet proposed)    View
72189  CVE-2014-4892  Candidate  The uControl Smart Home Automation (aka de.ucontrol) application 1.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140710)  None (candidate not yet proposed)    View

Page 20102 of 20943, showing 5 records out of 104715 total, starting on record 100506, ending on 100510

Actions