CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7175  CVE-2003-0347  Candidate  Heap-based buffer overflow in VBE.DLL and VBE6.DLL of Microsoft Visual Basic for Applications (VBA) SDK 5.0 through 6.3 allows remote attackers to execute arbitrary code via a document with a long ID parameter.  Assigned (20030528)  None (candidate not yet proposed)    View
72711  CVE-2014-5414  Candidate  Beckhoff Embedded PC images before 2014-10-22 and Automation Device Specification (ADS) TwinCAT components do not restrict the number of authentication attempts, which makes it easier for remote attackers to obtain access via a brute-force attack.  Assigned (20140822)  None (candidate not yet proposed)    View
72967  CVE-2014-5669  Candidate  The 9GAG - Funny pics and videos (aka com.ninegag.android.app) application 2.4.10 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7687  CVE-2003-0863  Candidate  The php_check_safe_mode_include_dir function in fopen_wrappers.c of PHP 4.3.x returns a success value (0) when the safe_mode_include_dir variable is not specified in configuration, which differs from the previous failure value and may allow remote attackers to exploit file include vulnerabilities in PHP applications.  Assigned (20031013)  None (candidate not yet proposed)    View
73223  CVE-2014-5924  Candidate  The Monster Makeup (aka com.bearhugmedia.android_monster) application 1.0.0.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View

Page 585 of 20943, showing 5 records out of 104715 total, starting on record 2921, ending on 2925

Actions