CVE List

Id CVE No. Status Description Phase Votes Comments Actions
75001  CVE-2014-7700  Candidate  The Flying Fox (aka com.chillingo.slyfoxfree.android.aja) application 1.0.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9721  CVE-2004-1293  Candidate  Buffer overflow in the ReadFontTbl function in reader.c for rtf2latex2e 1.0fc2 allows remote attackers to execute arbitrary code via a crafted RTF file.  Assigned (20041220)  None (candidate not yet proposed)    View
75257  CVE-2014-7956  Candidate  Cross-site scripting (XSS) vulnerability in the Pods plugin before 2.5 for WordPress allows remote attackers to inject arbitrary web script or HTML via the id parameter in an edit action in the pods page to wp-admin/admin.php.  Assigned (20141007)  None (candidate not yet proposed)    View
9977  CVE-2004-1549  Candidate  The conference menu in ActivePost Standard 3.1 sends passwords of password-protected rooms in cleartext, which could allow remote attackers to gain sensitive information by sniffing the network connection.  Assigned (20050220)  None (candidate not yet proposed)    View
75513  CVE-2014-8212  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141010)  None (candidate not yet proposed)    View

Page 20396 of 20943, showing 5 records out of 104715 total, starting on record 101976, ending on 101980

Actions