256851
|
- |
|
superheroquiz_project
|
superheroquiz
|
The superheroquiz (aka com.davidhey.superheroquiz) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtai…
|
CWE-310
Cryptographic Issues
|
CVE-2014-6680
|
2014-10-3 21:25 |
2014-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256852
|
- |
|
wepisdparentportal_project
|
wepisdparentportal
|
The wEPISDParentPortal (aka com.dreamstep.wEPISDParentPortal) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof server…
|
CWE-310
Cryptographic Issues
|
CVE-2014-6679
|
2014-10-3 21:23 |
2014-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256853
|
- |
|
zhtiantian
|
challengertx
|
The ChallengerTX (aka com.zhtiantian.ChallengerTX) application 3.9.12.5 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and …
|
CWE-310
Cryptographic Issues
|
CVE-2014-6673
|
2014-10-3 21:22 |
2014-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256854
|
- |
|
amazighmusic_project
|
amazighmusic
|
The Amazighmusic (aka nl.appsandroo.Amazighmusic) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain…
|
CWE-310
Cryptographic Issues
|
CVE-2014-6674
|
2014-10-3 21:22 |
2014-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256855
|
- |
|
racemotocross_project
|
racemotocross
|
The racemotocross (aka com.bossappsmk.racemotocross) application 1.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obt…
|
CWE-310
Cryptographic Issues
|
CVE-2014-6667
|
2014-10-3 21:19 |
2014-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256856
|
- |
|
plone
|
plone
|
python_scripts.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to execute Python code via a crafted URL, related to "go_back."
|
CWE-94
Code Injection
|
CVE-2012-5495
|
2014-10-3 03:57 |
2014-09-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256857
|
- |
|
zope plone
|
zope plone
|
AccessControl/AuthEncoding.py in Zope before 2.13.19, as used in Plone before 4.2.3 and 4.3 before beta 1, allows remote attackers to obtain passwords via vectors involving timing discrepancies in pa…
|
CWE-362
Race Condition
|
CVE-2012-5507
|
2014-10-3 03:25 |
2014-09-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256858
|
- |
|
mytx
|
tx_smart
|
The tx Smart (aka com.wooriwm.txsmart) application 7.05 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive…
|
CWE-310
Cryptographic Issues
|
CVE-2014-5959
|
2014-10-3 03:14 |
2014-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256859
|
- |
|
plone
|
plone
|
python_scripts.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to cause a denial of service (infinite loop) via an RSS feed request for a folder the user does not have permissi…
|
CWE-399
Resource Management Errors
|
CVE-2012-5506
|
2014-10-3 03:12 |
2014-09-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256860
|
- |
|
plone
|
plone
|
atat.py in Plone before 4.2.3 and 4.3 before beta 1 allows remote attackers to read private data structures via a request for a view without a name.
|
CWE-200
Information Exposure
|
CVE-2012-5505
|
2014-10-3 03:07 |
2014-09-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|