CVE List

Id CVE No. Status Description Phase Votes Comments Actions
72202  CVE-2014-4905  Candidate  The Clean Internet Browser (aka com.cleantab.browsesecure) application 1.36 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140710)  None (candidate not yet proposed)    View
72458  CVE-2014-5161  Candidate  The dissect_log function in plugins/irda/packet-irda.c in the IrDA dissector in Wireshark 1.10.x before 1.10.9 does not properly strip " " characters, which allows remote attackers to cause a denial of service (buffer underflow and application crash) via a crafted packet.  Assigned (20140731)  None (candidate not yet proposed)    View
7178  CVE-2003-0350  Candidate  The control for listing accessibility options in the Accessibility Utility Manager on Windows 2000 (ListView) does not properly handle Windows messages, which allows local users to execute arbitrary code via a "Shatter" style message to the Utility Manager that references a user-controlled callback function.  Assigned (20030528)  None (candidate not yet proposed)    View
72714  CVE-2014-5417  Candidate  Cross-site scripting (XSS) vulnerability in Meinberg NTP Server firmware on LANTIME M-Series devices 6.15.019 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.  Assigned (20140822)  None (candidate not yet proposed)    View
7434  CVE-2003-0607  Candidate  Buffer overflow in xconq 7.4.1 allows local users to become part of the "games" group via the (1) USER or (2) DISPLAY environment variables.  Assigned (20030728)  None (candidate not yet proposed)    View

Page 808 of 20943, showing 5 records out of 104715 total, starting on record 4036, ending on 4040

Actions