CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8182  CVE-2003-1358  Candidate  rs.F300 for HP-UX 10.0 through 11.22 uses the PATH environment variable to find and execute programs such as rm while operating at raised privileges, which allows local users to gain privileges by modifying the path to point to a malicious rm program.  Assigned (20071016)  None (candidate not yet proposed)    View
73718  CVE-2014-6418  Candidate  net/ceph/auth_x.c in Ceph, as used in the Linux kernel before 3.16.3, does not properly validate auth replies, which allows remote attackers to cause a denial of service (system crash) or possibly have unspecified other impact via crafted data from the IP address of a Ceph Monitor.  Assigned (20140915)  None (candidate not yet proposed)    View
8438  CVE-2004-0010  Candidate  Stack-based buffer overflow in the ncp_lookup function for ncpfs in Linux kernel 2.4.x allows local users to gain privileges.  Assigned (20040105)  None (candidate not yet proposed)    View
73974  CVE-2014-6674  Candidate  The Amazighmusic (aka nl.appsandroo.Amazighmusic) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140919)  None (candidate not yet proposed)    View
8694  CVE-2004-0266  Candidate  SQL injection vulnerability in the "public message" capability (public_message) for Php-Nuke 6.x to 7.1.0 allows remote attackers obtain the administrator password via the c_mid parameter.  Proposed (20040318)  ACCEPT(1) Cole | NOOP(3) Armstrong, Cox, Wall    View

Page 20153 of 20943, showing 5 records out of 104715 total, starting on record 100761, ending on 100765

Actions