CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
6399 | CVE-2002-2017 | Candidate | sastcpd in SAS/Base 8.0 allows local users to execute arbitrary code by setting the authprog environment variable to reference a malicious program, which is then executed by sastcpd. | Assigned (20050714) | None (candidate not yet proposed) | View | |
71935 | CVE-2014-4638 | Candidate | EMC Documentum Web Development Kit (WDK) before 6.8 allows remote attackers to conduct frame-injection attacks and obtain sensitive information via unspecified vectors. | Assigned (20140624) | None (candidate not yet proposed) | View | |
6655 | CVE-2002-2273 | Candidate | Cross-site scripting (XSS) vulnerability in Webster HTTP Server allows remote attackers to inject arbitrary web script or HTML via the URL. | Assigned (20071017) | None (candidate not yet proposed) | View | |
72191 | CVE-2014-4894 | Candidate | The MyMetro (aka com.myrippleapps.mymetro) application 2.4.7 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | Assigned (20140710) | None (candidate not yet proposed) | View | |
72447 | CVE-2014-5150 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20140730) | None (candidate not yet proposed) | View |
Page 20836 of 20943, showing 5 records out of 104715 total, starting on record 104176, ending on 104180