CVE List

Id CVE No. Status Description Phase Votes Comments Actions
72456  CVE-2014-5159  Candidate  SQL injection vulnerability in the ossim-framework service in AlienVault OSSIM before 4.6.0 allows remote attackers to execute arbitrary SQL commands via the ws_data parameter.  Assigned (20140731)  None (candidate not yet proposed)    View
7176  CVE-2003-0348  Candidate  A certain Microsoft Windows Media Player 9 Series ActiveX control allows remote attackers to view and manipulate the Media Library on the local system via HTML script.  Assigned (20030528)  None (candidate not yet proposed)    View
72712  CVE-2014-5415  Candidate  Beckhoff Embedded PC images before 2014-10-22 and Automation Device Specification (ADS) TwinCAT components might allow remote attackers to obtain access via the (1) Windows CE Remote Configuration Tool, (2) CE Remote Display service, or (3) TELNET service.  Assigned (20140822)  None (candidate not yet proposed)    View
7432  CVE-2003-0605  Candidate  The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and local attackers to use the DoS to hijack the epmapper pipe to gain privileges, via certain messages to the __RemoteGetClassObject interface that cause a NULL pointer to be passed to the PerformScmStage function.  Assigned (20030725)  None (candidate not yet proposed)    View
72968  CVE-2014-5670  Candidate  The SAS: Zombie Assault 3 (aka com.ninjakiwi.sas3zombieassault) application 2.56 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View

Page 655 of 20943, showing 5 records out of 104715 total, starting on record 3271, ending on 3275

Actions