CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
51257 | CVE-2011-3345 | Candidate | ulp/sdp/sdp_proc.c in the ib_sdp module (aka ib_sdp.ko) in the ofa_kernel package in the InfiniBand driver implementation in OpenFabrics Enterprise Distribution (OFED) before 1.5.3 does not properly handle certain non-array variables, which allows local users to cause a denial of service (stack memory corruption and system crash) by reading the /proc/net/sdpstats file. | Assigned (20110830) | None (candidate not yet proposed) | View | |
834 | CVE-1999-0854 | Entry | Ultimate Bulletin Board stores data files in the cgi-bin directory, allowing remote attackers to view the data if an error occurs when the HTTP server attempts to execute the file. | View | |||
6658 | CVE-2002-2276 | Candidate | Ultimate PHP Board (UPB) 1.0 allows remote attackers to view the physical path of the message board via a direct request to add.php, which leaks the path in an error message. | Assigned (20071017) | None (candidate not yet proposed) | View | |
6203 | CVE-2002-1821 | Candidate | Ultimate PHP Board (UPB) 1.0 and 1.0b allows remote authenticated users to gain privileges and perform unauthorized actions via direct requests to (1) admin_members.php, (2) admin_config.php, (3) admin_cat.php, or (4) admin_forum.php. | Assigned (20050629) | None (candidate not yet proposed) | View | |
6704 | CVE-2002-2322 | Candidate | Ultimate PHP Board (UPB) 1.0b stores the users.dat data file under the web root with insufficient access control, which allows remote attackers to obtain usernames and passwords. | Assigned (20071026) | None (candidate not yet proposed) | View |
Page 18607 of 20943, showing 5 records out of 104715 total, starting on record 93031, ending on 93035