CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9477  CVE-2004-1049  Candidate  Integer overflow in the LoadImage API of the USER32 Lib for Microsoft Windows allows remote attackers to execute arbitrary code via a .bmp, .cur, .ico or .ani file with a large image size field, which leads to a buffer overflow, aka the "Cursor and Icon Format Handling Vulnerability."  Assigned (20041117)  None (candidate not yet proposed)    View
75013  CVE-2014-7712  Candidate  The Tiket.com Hotel & Flight (aka com.tiket.gits) application 1.1.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9733  CVE-2004-1305  Candidate  The Windows Animated Cursor (ANI) capability in Windows NT, Windows 2000 through SP4, Windows XP through SP1, and Windows 2003 allow remote attackers to cause a denial of service via (1) the frame number set to zero, which causes an invalid memory address to be used and leads to a kernel crash, or (2) the rate number set to zero, which leads to resource exhaustion and hang.  Assigned (20041221)  None (candidate not yet proposed)    View
75269  CVE-2014-7968  Candidate  VDSM allows remote attackers to cause a denial of service (connection blocking) by keeping an SSL connection open.  Assigned (20141008)  None (candidate not yet proposed)    View
9989  CVE-2004-1561  Candidate  Buffer overflow in Icecast 2.0.1 and earlier allows remote attackers to execute arbitrary code via an HTTP request with a large number of headers.  Assigned (20050220)  None (candidate not yet proposed)    View

Page 434 of 20943, showing 5 records out of 104715 total, starting on record 2166, ending on 2170

Actions