CVE List

Id CVE No. Status Description Phase Votes Comments Actions
73740  CVE-2014-6440  Candidate  VideoLAN VLC media player before 2.1.5 allows remote attackers to execute arbitrary code or cause a denial of service.  Assigned (20140916)  None (candidate not yet proposed)    View
8460  CVE-2004-0032  Entry  Cross-site scripting (XSS) vulnerability in search.php in PHPGEDVIEW 2.61 allows remote attackers to inject arbitrary HTML and web script via the firstname parameter.        View
73996  CVE-2014-6696  Candidate  The Candy Girl Party Makeover (aka com.bearhugmedia.android_candygirlparty) application 1.0.0.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140919)  None (candidate not yet proposed)    View
8716  CVE-2004-0288  Candidate  Buffer overflow in the UdmDocToTextBuf function in mnoGoSearch 3.2.13 through 3.2.15 could allow remote attackers to execute arbitrary code by indexing a large document.  Proposed (20040318)  NOOP(4) Armstrong, Cole, Cox, Wall    View
74252  CVE-2014-6952  Candidate  The Manga Facts (aka app.mangafacts.ar) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20140919)  None (candidate not yet proposed)    View

Page 980 of 20943, showing 5 records out of 104715 total, starting on record 4896, ending on 4900

Actions