CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9480  CVE-2004-1052  Candidate  Buffer overflow in the getnickuserhost function in BNC 2.8.9, and possibly other versions, allows remote IRC servers to execute arbitrary code via an IRC server response that contains many (1) ! (exclamation) or (2) @ (at sign) characters.  Assigned (20041117)  None (candidate not yet proposed)    View
75016  CVE-2014-7715  Candidate  The GIGA HOBBY (aka com.innopage.store.gigahobby) application 1.0.6 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9736  CVE-2004-1308  Candidate  Integer overflow in (1) tif_dirread.c and (2) tif_fax3.c for libtiff 3.5.7 and 3.7.0 allows remote attackers to execute arbitrary code via a TIFF file containing a TIFF_ASCII or TIFF_UNDEFINED directory entry with a -1 entry count, which leads to a heap-based buffer overflow.  Assigned (20041221)  None (candidate not yet proposed)    View
75272  CVE-2014-7971  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141008)  None (candidate not yet proposed)    View
9992  CVE-2004-1564  Candidate  CRLF injection vulnerability in subscribe_thread.php in w-Agora 4.1.6a allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server via the thread parameter.  Assigned (20050220)  None (candidate not yet proposed)    View

Page 653 of 20943, showing 5 records out of 104715 total, starting on record 3261, ending on 3265

Actions