CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11563  CVE-2005-0357  Candidate  EMC Legato NetWorker, Sun Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 7.0 through 7.2 rely on AUTH_UNIX authentication, which relies on user ID for authentication and allows remote attackers to bypass authentication and gain privileges by spoofing a username or UID.  Assigned (20050211)  None (candidate not yet proposed)    View
11564  CVE-2005-0358  Candidate  EMC Legato NetWorker, Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 6.0 through 7.2 do not properly verify authentication tokens, which allows remote attackers to gain privileges by modifying an authentication token.  Assigned (20050211)  None (candidate not yet proposed)    View
11565  CVE-2005-0359  Candidate  The Legato PortMapper in EMC Legato NetWorker, Sun Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 7.0 through 7.2 does not restrict access to the pmap_set and pmap_unset commands, which allows remote attackers to (1) cause a denial of service by using pmap_unset to un-register a NetWorker service, or (2) obtain sensitive information from NetWorker services by using pmap_set to register a new service.  Assigned (20050211)  None (candidate not yet proposed)    View
11566  CVE-2005-0360  Candidate  The Microsoft Log Sink Class ActiveX control in pkmcore.dll is marked as "safe for scripting" for Internet Explorer, which allows remote attackers to create or append to arbitrary files.  Assigned (20050211)  None (candidate not yet proposed)    View
11567  CVE-2005-0361  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20050211)  None (candidate not yet proposed)    View

Page 1134 of 20943, showing 5 records out of 104715 total, starting on record 5666, ending on 5670

Actions