CVE List

Id CVE No. Status Description Phase Votes Comments Actions
71942  CVE-2014-4645  Candidate  Cross-site scripting (XSS) vulnerability in dhcpinfo.html in D-link DSL-2760U-E1 allows remote attackers to inject arbitrary web script or HTML via a hostname.  Assigned (20140625)  None (candidate not yet proposed)    View
6662  CVE-2002-2280  Candidate  syslogd on OpenBSD 2.9 through 3.2 does not change the source IP address of syslog packets when the machine"s IP addressed is changed without rebooting, e.g. via ifconfig, which can cause incorrect information to be sent to the syslog server.  Assigned (20071017)  None (candidate not yet proposed)    View
72198  CVE-2014-4901  Candidate  The Bond Trading (aka com.appmakr.app613309) application 197705 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140710)  None (candidate not yet proposed)    View
6918  CVE-2003-0089  Candidate  Buffer overflow in the Software Distributor utilities for HP-UX B.11.00 and B.11.11 allows local users to execute arbitrary code via a long LANG environment variable to setuid programs such as (1) swinstall and (2) swmodify.  Assigned (20030211)  None (candidate not yet proposed)    View
72454  CVE-2014-5157  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-5196. Reason: This candidate is a reservation duplicate of CVE-2014-5196. Notes: All CVE users should reference CVE-2014-5196 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20140731)  None (candidate not yet proposed)    View

Page 489 of 20943, showing 5 records out of 104715 total, starting on record 2441, ending on 2445

Actions