CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9482  CVE-2004-1054  Candidate  Untrusted execution path vulnerability in invscout in IBM AIX 5.1.0, 5.2.0, and 5.3.0 allows local users to gain privileges by modifying the PATH environment variable to point to a malicious "uname" program, which is executed from lsvpd after lsvpd has been invoked by invscout.  Assigned (20041118)  None (candidate not yet proposed)    View
75018  CVE-2014-7717  Candidate  The Mills-Hazel Property Mgmt (aka com.appexpress.millshazelpropertymanagement) application 3.0.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20141003)  None (candidate not yet proposed)    View
9738  CVE-2004-1310  Candidate  Stack-based buffer overflow in the asf_mmst_streaming.c functionality for MPlayer 1.0pre5 allows remote attackers to execute arbitrary code via a large MMST stream packet.  Assigned (20041221)  None (candidate not yet proposed)    View
75274  CVE-2014-7973  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20141008)  None (candidate not yet proposed)    View
9994  CVE-2004-1566  Candidate  Cross-site scripting (XSS) vulnerability in index.php in Silent Storm Portal 2.1 and 2.2 allows remote attackers to execute arbitrary web script or HTML via the module parameter.  Assigned (20050220)  None (candidate not yet proposed)    View

Page 812 of 20943, showing 5 records out of 104715 total, starting on record 4056, ending on 4060

Actions