CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11400  CVE-2005-0194  Candidate  Squid 2.5, when processing the configuration file, parses empty Access Control Lists (ACLs), including proxy_auth ACLs without defined auth schemes, in a way that effectively removes arguments, which could allow remote attackers to bypass intended ACLs if the administrator ignores the parser warnings.  Assigned (20050131)  None (candidate not yet proposed)    View
11399  CVE-2005-0193  Candidate  Buffer overflow in the (1) -v and (2) -a switches in mRouter in iSync 1.5 in Mac OS X 10.3.7 and earlier allows local users to execute arbitrary code.  Assigned (20050128)  None (candidate not yet proposed)    View
11398  CVE-2005-0192  Candidate  Directory traversal vulnerability in the parsing of Skin file names in RealPlayer 10.5 (6.0.12.1040) and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in an RJS filename.  Assigned (20050128)  None (candidate not yet proposed)    View
11397  CVE-2005-0191  Candidate  Off-by-one buffer overflow in the processing of tags in Real Metadata Package (RMP) files in RealPlayer 10.5 (6.0.12.1040) and earlier could allow remote attackers to execute arbitrary code via a long tag.  Assigned (20050128)  None (candidate not yet proposed)    View
11396  CVE-2005-0190  Candidate  Directory traversal vulnerability in RealPlayer 10.5 (6.0.12.1040) and earlier allows remote attackers to delete arbitrary files via a Real Metadata Packages (RMP) file with a FILENAME tag containing .. (dot dot) sequences in a filename that ends with a ? (question mark) and an allowed file extension (e.g. .mp3), which bypasses the check for the file extension.  Assigned (20050128)  None (candidate not yet proposed)    View

Page 18664 of 20943, showing 5 records out of 104715 total, starting on record 93316, ending on 93320

Actions