CVE List

Id CVE No. Status Description Phase Votes Comments Actions
51257  CVE-2011-3345  Candidate  ulp/sdp/sdp_proc.c in the ib_sdp module (aka ib_sdp.ko) in the ofa_kernel package in the InfiniBand driver implementation in OpenFabrics Enterprise Distribution (OFED) before 1.5.3 does not properly handle certain non-array variables, which allows local users to cause a denial of service (stack memory corruption and system crash) by reading the /proc/net/sdpstats file.  Assigned (20110830)  None (candidate not yet proposed)    View
834  CVE-1999-0854  Entry  Ultimate Bulletin Board stores data files in the cgi-bin directory, allowing remote attackers to view the data if an error occurs when the HTTP server attempts to execute the file.        View
6658  CVE-2002-2276  Candidate  Ultimate PHP Board (UPB) 1.0 allows remote attackers to view the physical path of the message board via a direct request to add.php, which leaks the path in an error message.  Assigned (20071017)  None (candidate not yet proposed)    View
6203  CVE-2002-1821  Candidate  Ultimate PHP Board (UPB) 1.0 and 1.0b allows remote authenticated users to gain privileges and perform unauthorized actions via direct requests to (1) admin_members.php, (2) admin_config.php, (3) admin_cat.php, or (4) admin_forum.php.  Assigned (20050629)  None (candidate not yet proposed)    View
6704  CVE-2002-2322  Candidate  Ultimate PHP Board (UPB) 1.0b stores the users.dat data file under the web root with insufficient access control, which allows remote attackers to obtain usernames and passwords.  Assigned (20071026)  None (candidate not yet proposed)    View

Page 18607 of 20943, showing 5 records out of 104715 total, starting on record 93031, ending on 93035

Actions