CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11830  CVE-2005-0624  Candidate  reportbug before 2.62 creates the .reportbugrc configuration file with world-readable permissions, which allows local users to obtain email smarthost passwords.  Assigned (20050302)  None (candidate not yet proposed)    View
11831  CVE-2005-0625  Candidate  reportbug 3.2 includes settings from .reportbugrc in bug reports, which exposes sensitive information such as smtpuser and smtppasswd.  Assigned (20050302)  None (candidate not yet proposed)    View
11832  CVE-2005-0626  Candidate  Race condition in Squid 2.5.STABLE7 to 2.5.STABLE9, when using the Netscape Set-Cookie recommendations for handling cookies in caches, may cause Set-Cookie headers to be sent to other users, which allows attackers to steal the related cookies.  Assigned (20050303)  None (candidate not yet proposed)    View
11833  CVE-2005-0627  Candidate  Qt before 3.3.4 searches the BUILD_PREFIX directory, which could be world-writable, to load shared libraries regardless of the LD_LIBRARY_PATH environment variable, which allows local users to execute arbitrary programs.  Assigned (20050304)  None (candidate not yet proposed)    View
11834  CVE-2005-0628  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in Forumwa 1.0 allow remote attackers to inject arbitrary web script or HTML via (1) the keyword parameter in search.php or the (2) body or (3) subject of a forum message.  Assigned (20050304)  None (candidate not yet proposed)    View

Page 1261 of 20943, showing 5 records out of 104715 total, starting on record 6301, ending on 6305

Actions