CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9207  CVE-2004-0779  Candidate  The (1) Mozilla 1.6, (2) Firebird 0.7 and (3) Firefox 0.8 web browsers do not properly verify that cached passwords for SSL encrypted sites are only sent via SSL encrypted sessions to the site, which allows a remote attacker to cause a cached password to be sent in cleartext to a spoofed site.  Assigned (20040813)  None (candidate not yet proposed)    View
74743  CVE-2014-7442  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141003)  None (candidate not yet proposed)    View
9463  CVE-2004-1035  Candidate  Multiple integer signedness errors in (1) imapcommon.c, (2) main.c, (3) request.c, and (4) select.c for up-imapproxy IMAP proxy 1.2.2 allow remote attackers to cause a denial of service (server crash) and possibly leak sensitive information via certain literal values that are not properly handled when using the IMAP_Line_Read function.  Assigned (20041112)  None (candidate not yet proposed)    View
74999  CVE-2014-7698  Candidate  The Xinhua International (aka org.xinhua.xnews_international) application 5.5.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9719  CVE-2004-1291  Candidate  Buffer overflow in qwik-smtpd allows remote attackers to use the server as an SMTP spam relay via a long HELO command, which overwrites the adjacent localIP data buffer.  Assigned (20041220)  None (candidate not yet proposed)    View

Page 20223 of 20943, showing 5 records out of 104715 total, starting on record 101111, ending on 101115

Actions