CVE List

Id CVE No. Status Description Phase Votes Comments Actions
8964  CVE-2004-0536  Candidate  Format string vulnerability in Tripwire commercial 4.0.1 and earlier, including 2.4, and open source 2.3.1 and earlier, allows local users to gain privileges via format string specifiers in a file name, which is used in the generation of an email report.  Assigned (20040604)  None (candidate not yet proposed)    View
74500  CVE-2014-7200  Candidate  Cross-site scripting (XSS) vulnerability in pi1/class.tx_dmmjobcontrol_pi1.php in the JobControl (dmmjobcontrol) extension 2.14.0 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via the tx_dmmjobcontrol_pi1[search][keyword] parameter to jobs/.  Assigned (20140926)  None (candidate not yet proposed)    View
9220  CVE-2004-0792  Candidate  Directory traversal vulnerability in the sanitize_path function in util.c for rsync 2.6.2 and earlier, when chroot is disabled, allows attackers to read or write certain files.  Assigned (20040817)  None (candidate not yet proposed)    View
74756  CVE-2014-7455  Candidate  The Zoella Unofficial (aka com.automon.ay.zoella) application 1.4.0.5 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9476  CVE-2004-1048  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20041117)  None (candidate not yet proposed)    View

Page 332 of 20943, showing 5 records out of 104715 total, starting on record 1656, ending on 1660

Actions