CVE List

Id CVE No. Status Description Phase Votes Comments Actions
72192  CVE-2014-4895  Candidate  The Herpin Time Radio (aka com.herpin.time.radio) application 2.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140710)  None (candidate not yet proposed)    View
6912  CVE-2003-0083  Candidate  Apache 1.3 before 1.3.25 and Apache 2.0 before version 2.0.46 does not filter terminal escape sequences from its access logs, which could make it easier for attackers to insert those sequences into terminal emulators containing vulnerabilities related to escape sequences, a different vulnerability than CVE-2003-0020.  Assigned (20030210)  NOOP(1) Christey  Christey> MANDRAKE:MDKSA-2003:050 | (as suggested by Vincent Danen of Mandrake)  View
72448  CVE-2014-5151  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20140730)  None (candidate not yet proposed)    View
7168  CVE-2003-0340  Candidate  Demarc Puresecure 1.6 stores authentication information for the logging server in plaintext, which allows attackers to steal login names and passwords to gain privileges.  Assigned (20030522)  None (candidate not yet proposed)    View
72704  CVE-2014-5407  Candidate  Multiple stack-based buffer overflows in Schneider Electric VAMPSET 2.2.136 and earlier allow local users to cause a denial of service (application halt) via a malformed (1) setting file or (2) disturbance recording file.  Assigned (20140822)  None (candidate not yet proposed)    View

Page 620 of 20943, showing 5 records out of 104715 total, starting on record 3096, ending on 3100

Actions