CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7929  CVE-2003-1105  Candidate  Unknown vulnerability in Internet Explorer 5.01 SP3 through 6.0 SP1 allows remote attackers to cause a denial of service (browser or Outlook Express crash) via HTML with certain input tags that are not properly rendered.  Assigned (20050311)  None (candidate not yet proposed)    View
73465  CVE-2014-6166  Candidate  The Communications Enabled Applications (CEA) service in IBM WebSphere Application Server 8.0.x before 8.0.0.10 and 8.5.x before 8.5.5.4, and Feature Pack for CEA 1.x before 1.0.0.15, allows remote attackers to read arbitrary files via an XML external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue.  Assigned (20140902)  None (candidate not yet proposed)    View
8185  CVE-2003-1361  Candidate  Unknown vulnerability in VERITAS Bare Metal Restore (BMR) of Tivoli Storage Manager (TSM) 3.1.0 through 3.2.1 allows remote attackers to gain root privileges on the BMR Main Server.  Assigned (20071016)  None (candidate not yet proposed)    View
73721  CVE-2014-6421  Candidate  Use-after-free vulnerability in the SDP dissector in Wireshark 1.10.x before 1.10.10 allows remote attackers to cause a denial of service (application crash) via a crafted packet that leverages split memory ownership between the SDP and RTP dissectors.  Assigned (20140916)  None (candidate not yet proposed)    View
73977  CVE-2014-6677  Candidate  The Ticket Round Up (aka com.xcr.android.ticketroundupapp) application 3.0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140919)  None (candidate not yet proposed)    View

Page 20376 of 20943, showing 5 records out of 104715 total, starting on record 101876, ending on 101880

Actions