CVE List

Id CVE No. Status Description Phase Votes Comments Actions
74248  CVE-2014-6948  Candidate  The TH3 professional Al Mohtarif (aka com.th3professional.almohtarif) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140919)  None (candidate not yet proposed)    View
8968  CVE-2004-0540  Candidate  Microsoft Windows 2000, when running in a domain whose Fully Qualified Domain Name (FQDN) is exactly 8 characters long, does not prevent users with expired passwords from logging on to the domain.  Assigned (20040604)  None (candidate not yet proposed)    View
74504  CVE-2014-72038  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-2353. Reason: This candidate is a duplicate of CVE-2014-2353. The wrong ID was used. Notes: All CVE users should reference CVE-2014-2353 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20150113)  None (candidate not yet proposed)    View
9224  CVE-2004-0796  Candidate  SpamAssassin 2.5x, and 2.6x before 2.64, allows remote attackers to cause a denial of service via certain malformed messages.  Assigned (20040820)  None (candidate not yet proposed)    View
74760  CVE-2014-7459  Candidate  The Press-Leader (aka com.soln.S95309F65AD59F99CFC2C710A517B0B7E) application 1.0011.b0011 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View

Page 652 of 20943, showing 5 records out of 104715 total, starting on record 3256, ending on 3260

Actions