CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9465 | CVE-2004-1037 | Candidate | The search function in TWiki 20030201 allows remote attackers to execute arbitrary commands via shell metacharacters in a search string. | Assigned (20041116) | None (candidate not yet proposed) | View | |
75001 | CVE-2014-7700 | Candidate | The Flying Fox (aka com.chillingo.slyfoxfree.android.aja) application 1.0.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | Assigned (20141003) | None (candidate not yet proposed) | View | |
9721 | CVE-2004-1293 | Candidate | Buffer overflow in the ReadFontTbl function in reader.c for rtf2latex2e 1.0fc2 allows remote attackers to execute arbitrary code via a crafted RTF file. | Assigned (20041220) | None (candidate not yet proposed) | View | |
75257 | CVE-2014-7956 | Candidate | Cross-site scripting (XSS) vulnerability in the Pods plugin before 2.5 for WordPress allows remote attackers to inject arbitrary web script or HTML via the id parameter in an edit action in the pods page to wp-admin/admin.php. | Assigned (20141007) | None (candidate not yet proposed) | View | |
9977 | CVE-2004-1549 | Candidate | The conference menu in ActivePost Standard 3.1 sends passwords of password-protected rooms in cleartext, which could allow remote attackers to gain sensitive information by sniffing the network connection. | Assigned (20050220) | None (candidate not yet proposed) | View |
Page 20378 of 20943, showing 5 records out of 104715 total, starting on record 101886, ending on 101890