CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9465  CVE-2004-1037  Candidate  The search function in TWiki 20030201 allows remote attackers to execute arbitrary commands via shell metacharacters in a search string.  Assigned (20041116)  None (candidate not yet proposed)    View
75001  CVE-2014-7700  Candidate  The Flying Fox (aka com.chillingo.slyfoxfree.android.aja) application 1.0.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9721  CVE-2004-1293  Candidate  Buffer overflow in the ReadFontTbl function in reader.c for rtf2latex2e 1.0fc2 allows remote attackers to execute arbitrary code via a crafted RTF file.  Assigned (20041220)  None (candidate not yet proposed)    View
75257  CVE-2014-7956  Candidate  Cross-site scripting (XSS) vulnerability in the Pods plugin before 2.5 for WordPress allows remote attackers to inject arbitrary web script or HTML via the id parameter in an edit action in the pods page to wp-admin/admin.php.  Assigned (20141007)  None (candidate not yet proposed)    View
9977  CVE-2004-1549  Candidate  The conference menu in ActivePost Standard 3.1 sends passwords of password-protected rooms in cleartext, which could allow remote attackers to gain sensitive information by sniffing the network connection.  Assigned (20050220)  None (candidate not yet proposed)    View

Page 20378 of 20943, showing 5 records out of 104715 total, starting on record 101886, ending on 101890

Actions