CVE List

Id CVE No. Status Description Phase Votes Comments Actions
72705  CVE-2014-5408  Candidate  Cross-site scripting (XSS) vulnerability in the login script in the Wind Farm Portal on Nordex Control 2 (NC2) SCADA devices 15 and earlier allows remote attackers to inject arbitrary web script or HTML via the username parameter.  Assigned (20140822)  None (candidate not yet proposed)    View
7425  CVE-2003-0598  Candidate  ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2003-0657. Reason: This candidate is a reservation duplicate of CVE-2003-0657. Notes: All CVE users should reference CVE-2003-0657 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.  Assigned (20030721)  None (candidate not yet proposed)    View
72961  CVE-2014-5663  Candidate  The FreeCell Solitaire (aka com.mobilityware.freecell) application 2.1.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View
7681  CVE-2003-0857  Candidate  The (1) ipq_read and (2) ipulog_read functions in iptables allow local users to cause a denial of service by sending spoofed messages as other users to the kernel netlink interface.  Assigned (20031010)  None (candidate not yet proposed)    View
73217  CVE-2014-5918  Candidate  The Secret Circle - talk freely (aka com.easyxapp.secret) application 2.2.00.26 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140830)  None (candidate not yet proposed)    View

Page 92 of 20943, showing 5 records out of 104715 total, starting on record 456, ending on 460

Actions