CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
72456 | CVE-2014-5159 | Candidate | SQL injection vulnerability in the ossim-framework service in AlienVault OSSIM before 4.6.0 allows remote attackers to execute arbitrary SQL commands via the ws_data parameter. | Assigned (20140731) | None (candidate not yet proposed) | View | |
7176 | CVE-2003-0348 | Candidate | A certain Microsoft Windows Media Player 9 Series ActiveX control allows remote attackers to view and manipulate the Media Library on the local system via HTML script. | Assigned (20030528) | None (candidate not yet proposed) | View | |
72712 | CVE-2014-5415 | Candidate | Beckhoff Embedded PC images before 2014-10-22 and Automation Device Specification (ADS) TwinCAT components might allow remote attackers to obtain access via the (1) Windows CE Remote Configuration Tool, (2) CE Remote Display service, or (3) TELNET service. | Assigned (20140822) | None (candidate not yet proposed) | View | |
7432 | CVE-2003-0605 | Candidate | The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and local attackers to use the DoS to hijack the epmapper pipe to gain privileges, via certain messages to the __RemoteGetClassObject interface that cause a NULL pointer to be passed to the PerformScmStage function. | Assigned (20030725) | None (candidate not yet proposed) | View | |
72968 | CVE-2014-5670 | Candidate | The SAS: Zombie Assault 3 (aka com.ninjakiwi.sas3zombieassault) application 2.56 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | Assigned (20140830) | None (candidate not yet proposed) | View |
Page 655 of 20943, showing 5 records out of 104715 total, starting on record 3271, ending on 3275