CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7174  CVE-2003-0346  Candidate  Multiple integer overflows in a Microsoft Windows DirectX MIDI library (QUARTZ.DLL) allow remote attackers to execute arbitrary code via a MIDI (.mid) file with (1) large length for a Text or Copyright string, or (2) a large number of tracks, which leads to a heap-based buffer overflow.  Assigned (20030528)  None (candidate not yet proposed)    View
72710  CVE-2014-5413  Candidate  Schneider Electric StruxureWare SCADA Expert ClearSCADA 2010 R3 through 2014 R1 uses the MD5 algorithm for an X.509 certificate, which makes it easier for remote attackers to spoof servers via a cryptographic attack against this algorithm.  Assigned (20140822)  None (candidate not yet proposed)    View
7430  CVE-2003-0603  Candidate  Bugzilla 2.16.x before 2.16.3, 2.17.x before 2.17.4, and earlier versions allows local users to overwrite arbitrary files via a symlink attack on temporary files that are created in directories with group-writable or world-writable permissions.  Assigned (20030725)  None (candidate not yet proposed)    View
72966  CVE-2014-5668  Candidate  The BAND -Group sharing & planning (aka com.nhn.android.band) application 3.2.8 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7686  CVE-2003-0862  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2003-0813. Reason: This candidate is a duplicate of CVE-2003-0813. Notes: All CVE users should reference CVE-2003-0813 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20031013)  None (candidate not yet proposed)    View

Page 490 of 20943, showing 5 records out of 104715 total, starting on record 2446, ending on 2450

Actions