CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
72192 | CVE-2014-4895 | Candidate | The Herpin Time Radio (aka com.herpin.time.radio) application 2.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | Assigned (20140710) | None (candidate not yet proposed) | View | |
6912 | CVE-2003-0083 | Candidate | Apache 1.3 before 1.3.25 and Apache 2.0 before version 2.0.46 does not filter terminal escape sequences from its access logs, which could make it easier for attackers to insert those sequences into terminal emulators containing vulnerabilities related to escape sequences, a different vulnerability than CVE-2003-0020. | Assigned (20030210) | NOOP(1) Christey | Christey> MANDRAKE:MDKSA-2003:050 | (as suggested by Vincent Danen of Mandrake) | View |
72448 | CVE-2014-5151 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20140730) | None (candidate not yet proposed) | View | |
7168 | CVE-2003-0340 | Candidate | Demarc Puresecure 1.6 stores authentication information for the logging server in plaintext, which allows attackers to steal login names and passwords to gain privileges. | Assigned (20030522) | None (candidate not yet proposed) | View | |
72704 | CVE-2014-5407 | Candidate | Multiple stack-based buffer overflows in Schneider Electric VAMPSET 2.2.136 and earlier allow local users to cause a denial of service (application halt) via a malformed (1) setting file or (2) disturbance recording file. | Assigned (20140822) | None (candidate not yet proposed) | View |
Page 620 of 20943, showing 5 records out of 104715 total, starting on record 3096, ending on 3100