CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7431  CVE-2003-0604  Candidate  Windows Media Player (WMP) 7 and 8, as running on Internet Explorer and possibly other Microsoft products that process HTML, allows remote attackers to bypass zone restrictions and access or execute arbitrary files via an IFRAME tag pointing to an ASF file whose Content-location contains a File:// URL.  Assigned (20030725)  NOOP(1) Christey  Christey> consider MSKB:828026, which *might* address this problem.  View
72967  CVE-2014-5669  Candidate  The 9GAG - Funny pics and videos (aka com.ninegag.android.app) application 2.4.10 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7687  CVE-2003-0863  Candidate  The php_check_safe_mode_include_dir function in fopen_wrappers.c of PHP 4.3.x returns a success value (0) when the safe_mode_include_dir variable is not specified in configuration, which differs from the previous failure value and may allow remote attackers to exploit file include vulnerabilities in PHP applications.  Assigned (20031013)  None (candidate not yet proposed)    View
73223  CVE-2014-5924  Candidate  The Monster Makeup (aka com.bearhugmedia.android_monster) application 1.0.0.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7943  CVE-2003-1119  Candidate  SSH Secure Shell before 3.2.9 allows remote attackers to cause a denial of service via malformed BER/DER packets.  Assigned (20050311)  None (candidate not yet proposed)    View

Page 570 of 20943, showing 5 records out of 104715 total, starting on record 2846, ending on 2850

Actions