CVE List

Id CVE No. Status Description Phase Votes Comments Actions
72700  CVE-2014-5403  Candidate  Hospira MedNet before 6.1 uses hardcoded cryptographic keys for protection of data transmission from infusion pumps, which allows remote attackers to obtain sensitive information by sniffing the network.  Assigned (20140822)  None (candidate not yet proposed)    View
72956  CVE-2014-5658  Candidate  The MercadoLibre (aka com.mercadolibre) application 3.8.7 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7676  CVE-2003-0852  Candidate  Format string vulnerability in send_message.c for Sylpheed-claws 0.9.4 through 0.9.6 allows remote SMTP servers to cause a denial of service (crash) in sylpheed via format strings in an error message.  Assigned (20031010)  None (candidate not yet proposed)    View
73212  CVE-2014-5914  Candidate  The Finansbank Cep Subesi (aka com.finansbank.mobile.cepsube) application 1.1.5 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7932  CVE-2003-1108  Candidate  The Session Initiation Protocol (SIP) implementation in Alcatel OmniPCX Enterprise 5.0 Lx allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted INVITE messages, as demonstrated by the OUSPG PROTOS c07-sip test suite.  Assigned (20050311)  None (candidate not yet proposed)    View

Page 20606 of 20943, showing 5 records out of 104715 total, starting on record 103026, ending on 103030

Actions