CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
73222 | CVE-2014-5923 | Candidate | The Facebook Status Via (aka com.StatusViaAdvanced) application 3.5 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | Assigned (20140830) | None (candidate not yet proposed) | View | |
7942 | CVE-2003-1118 | Candidate | Buffer overflow in the SETI@home client 3.03 and other versions allows remote attackers to cause a denial of service (client crash) and execute arbitrary code via a spoofed server response containing a long string followed by a (newline) character. | Assigned (20050311) | None (candidate not yet proposed) | View | |
73478 | CVE-2014-6179 | Candidate | Cross-site scripting (XSS) vulnerability in the Web UI in IBM WebSphere Service Registry and Repository (WSRR) 7.5.x before 7.5.0.4 and 8.0.x before 8.0.0.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | Assigned (20140902) | None (candidate not yet proposed) | View | |
8198 | CVE-2003-1374 | Candidate | Buffer overflow in disable of HP-UX 11.0 may allow local users to execute arbitrary code via a long argument to the (1) -r or (2)-c options. | Assigned (20071018) | None (candidate not yet proposed) | View | |
73734 | CVE-2014-6434 | Candidate | gpExec in GoPro HERO 3+ allows remote attackers to execute arbitrary commands via a the (1) a1 or (2) a2 parameter in a restart action. | Assigned (20140916) | None (candidate not yet proposed) | View |
Page 491 of 20943, showing 5 records out of 104715 total, starting on record 2451, ending on 2455