CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
7689 | CVE-2003-0865 | Candidate | Heap-based buffer overflow in readstring of httpget.c for mpg123 0.59r and 0.59s allows remote attackers to execute arbitrary code via a long request. | Assigned (20031015) | None (candidate not yet proposed) | View | |
73225 | CVE-2014-5926 | Candidate | The DCU Mobile Banking (aka com.Vertifi.Mobile.P211391825) application 2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | Assigned (20140830) | None (candidate not yet proposed) | View | |
7945 | CVE-2003-1121 | Candidate | Services in ScriptLogic 4.01, and possibly other versions before 4.14, process client requests at raised privileges, which allows remote attackers to (1) modify arbitrary registry entries via the ScriptLogic RPC service (SLRPC) or (2) modify arbitrary configuration via the RunAdmin services (SLRAserver.exe and SLRAclient.exe). | Assigned (20050311) | None (candidate not yet proposed) | View | |
73481 | CVE-2014-6182 | Candidate | Directory traversal vulnerability in an export function in the Process Center in IBM Business Process Manager (BPM) 8.0.x through 8.0.1.3 and 8.5.x through 8.5.5 allows remote authenticated users to read arbitrary files via a .. (dot dot) in a URL. | Assigned (20140902) | None (candidate not yet proposed) | View | |
8201 | CVE-2003-1377 | Candidate | Buffer overflow in the reverse DNS lookup of Smart IRC Daemon (SIRCD) 0.4.0 and 0.4.4 allows remote attackers to execute arbitrary code via a client with a long hostname. | Assigned (20071018) | None (candidate not yet proposed) | View |
Page 737 of 20943, showing 5 records out of 104715 total, starting on record 3681, ending on 3685