CVE List

Id CVE No. Status Description Phase Votes Comments Actions
72966  CVE-2014-5668  Candidate  The BAND -Group sharing & planning (aka com.nhn.android.band) application 3.2.8 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7686  CVE-2003-0862  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2003-0813. Reason: This candidate is a duplicate of CVE-2003-0813. Notes: All CVE users should reference CVE-2003-0813 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20031013)  None (candidate not yet proposed)    View
73222  CVE-2014-5923  Candidate  The Facebook Status Via (aka com.StatusViaAdvanced) application 3.5 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7942  CVE-2003-1118  Candidate  Buffer overflow in the SETI@home client 3.03 and other versions allows remote attackers to cause a denial of service (client crash) and execute arbitrary code via a spoofed server response containing a long string followed by a (newline) character.  Assigned (20050311)  None (candidate not yet proposed)    View
73478  CVE-2014-6179  Candidate  Cross-site scripting (XSS) vulnerability in the Web UI in IBM WebSphere Service Registry and Repository (WSRR) 7.5.x before 7.5.0.4 and 8.0.x before 8.0.0.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20140902)  None (candidate not yet proposed)    View

Page 495 of 20943, showing 5 records out of 104715 total, starting on record 2471, ending on 2475

Actions