CVE List

Id CVE No. Status Description Phase Votes Comments Actions
73217  CVE-2014-5918  Candidate  The Secret Circle - talk freely (aka com.easyxapp.secret) application 2.2.00.26 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7937  CVE-2003-1113  Candidate  The Session Initiation Protocol (SIP) implementation in IPTel SIP Express Router 0.8.9 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted INVITE messages, as demonstrated by the OUSPG PROTOS c07-sip test suite.  Assigned (20050311)  None (candidate not yet proposed)    View
73473  CVE-2014-6174  Candidate  IBM WebSphere Application Server 7.x before 7.0.0.37, 8.0.x before 8.0.0.10, and 8.5.x before 8.5.5.4 allows remote attackers to conduct clickjacking attacks via a crafted web site.  Assigned (20140902)  None (candidate not yet proposed)    View
8193  CVE-2003-1369  Candidate  Buffer overflow in ByteCatcher FTP client 1.04b allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long FTP server banner.  Assigned (20071016)  None (candidate not yet proposed)    View
73729  CVE-2014-6429  Candidate  The SnifferDecompress function in wiretap/ngsniffer.c in the DOS Sniffer file parser in Wireshark 1.10.x before 1.10.10 and 1.12.x before 1.12.1 does not properly handle empty input data, which allows remote attackers to cause a denial of service (application crash) via a crafted file.  Assigned (20140916)  None (candidate not yet proposed)    View

Page 701 of 20943, showing 5 records out of 104715 total, starting on record 3501, ending on 3505

Actions