CVE List

Id CVE No. Status Description Phase Votes Comments Actions
75004  CVE-2014-7703  Candidate  The Terrorizer Magazine (aka com.triactivemedia.terrorizer) application @7F08017A for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9724  CVE-2004-1296  Candidate  The (1) eqn2graph and (2) pic2graph scripts in groff 1.18.1 allow local users to overwrite arbitrary files via a symlink attack on temporary files.  Assigned (20041221)  None (candidate not yet proposed)    View
75260  CVE-2014-7959  Candidate  SQL injection vulnerability in admin/htaccess/bpsunlock.php in the BulletProof Security plugin before .51.1 for WordPress allows remote authenticated users to execute arbitrary SQL commands via the tableprefix parameter.  Assigned (20141007)  None (candidate not yet proposed)    View
9980  CVE-2004-1552  Candidate  SQL injection vulnerability in aspWebCalendar allows remote attackers to execute arbitrary SQL statements via (1) the username field on the login page or (2) the eventid parameter to calendar.asp.  Assigned (20050220)  None (candidate not yet proposed)    View
75516  CVE-2014-8215  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141010)  None (candidate not yet proposed)    View

Page 20609 of 20943, showing 5 records out of 104715 total, starting on record 103041, ending on 103045

Actions