CVE List

Id CVE No. Status Description Phase Votes Comments Actions
76034  CVE-2014-8733  Candidate  Cloudera Manager 5.2.0, 5.2.1, and 5.3.0 stores the LDAP bind password in plaintext in unspecified world-readable files under /etc/hadoop, which allows local users to obtain this password.  Assigned (20141110)  None (candidate not yet proposed)    View
10754  CVE-2004-2328  Candidate  Clearswift MAILsweeper for SMTP before 4.3_13 allows remote attackers to cause a denial of service (infinite loop) via an e-mail with a crafted RAR archive attached.  Assigned (20050816)  None (candidate not yet proposed)    View
76290  CVE-2014-8989  Candidate  The Linux kernel through 3.17.4 does not properly restrict dropping of supplemental group memberships in certain namespace scenarios, which allows local users to bypass intended file permissions by leveraging a POSIX ACL containing an entry for the group category that is more restrictive than the entry for the other category, aka a "negative groups" issue, related to kernel/groups.c, kernel/uid16.c, and kernel/user_namespace.c.  Assigned (20141119)  None (candidate not yet proposed)    View
11010  CVE-2004-2584  Candidate  frmAddfolder.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote authenticated users to create a folder that SmarterMail cannot delete or rename via a folder name with a null byte ("%00"). NOTE: it is not clear whether this issue poses a vulnerability.  Assigned (20051128)  None (candidate not yet proposed)    View
76546  CVE-2014-9245  Candidate  Zenoss Core through 5 Beta 3 allows remote attackers to obtain sensitive information by attempting a product-rename action with an invalid new name and then reading a stack trace, as demonstrated by internal URL information, aka ZEN-15382.  Assigned (20141203)  None (candidate not yet proposed)    View

Page 178 of 20943, showing 5 records out of 104715 total, starting on record 886, ending on 890

Actions