CVE List

Id CVE No. Status Description Phase Votes Comments Actions
66319  CVE-2013-6372  Candidate  The Subversion plugin before 1.54 for Jenkins stores credentials using base64 encoding, which allows local users to obtain passwords and SSH private keys by reading a subversion.credentials file.  Assigned (20131104)  None (candidate not yet proposed)    View
1039  CVE-1999-1059  Entry  Vulnerability in rexec daemon (rexecd) in AT&T TCP/IP 4.0 for various SVR4 systems allows remote attackers to execute arbitrary commands.        View
66575  CVE-2013-6628  Candidate  net/socket/ssl_client_socket_nss.cc in the TLS implementation in Google Chrome before 31.0.1650.48 does not ensure that a server"s X.509 certificate is the same during renegotiation as it was before renegotiation, which might allow remote web servers to interfere with trust relationships by renegotiating a session.  Assigned (20131105)  None (candidate not yet proposed)    View
66831  CVE-2013-6884  Candidate  The write-blocker in CRU Ditto Forensic FieldStation with firmware before 2013Oct15a has a default "ditto" username and password, which allows remote attackers to gain privileges.  Assigned (20131127)  None (candidate not yet proposed)    View
1551  CVE-1999-1571  Candidate  Buffer overflow in sar for SCO OpenServer 5.0.0 through 5.0.5 may allow local users to gain root privileges via a long -f parameter, a different vulnerability than CVE-1999-1570.  Assigned (20021008)  None (candidate not yet proposed)    View

Page 1210 of 20943, showing 5 records out of 104715 total, starting on record 6046, ending on 6050

Actions