CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
14988 | CVE-2005-3784 | Candidate | The auto-reap of child processes in Linux kernel 2.6 before 2.6.15 includes processes with ptrace attached, which leads to a dangling ptrace reference and allows local users to cause a denial of service (crash) and gain root privileges. | Assigned (20051123) | None (candidate not yet proposed) | View | |
14989 | CVE-2005-3785 | Candidate | Second-order symlink vulnerability in eix-sync.in in Ebuild IndeX (eix) before 0.5.0_pre2 allows local users to overwrite arbitrary files via a symlink attack on the exi.X.sync temporary file, which is processed by the diff-eix program. | Assigned (20051123) | None (candidate not yet proposed) | View | |
14990 | CVE-2005-3786 | Candidate | Novell ZENworks for Desktops 4.0.1, ZENworks for Servers 3.0.2, and ZENworks 6.5 Desktop Management does not restrict access to Remote Diagnostics, which allows local users to bypass security policies by using Console One. | Assigned (20051123) | None (candidate not yet proposed) | View | |
14942 | CVE-2005-3738 | Candidate | globals.php in Mambo Site Server 4.0.14 and earlier, when register_globals is disabled, allows remote attackers to overwrite variables in the GLOBALS array and conduct various attacks, as demonstrated using the mosConfig_absolute_path parameter to content.html.php for remote PHP file inclusion. | Assigned (20051122) | None (candidate not yet proposed) | View | |
14943 | CVE-2005-3739 | Candidate | Unspecified vulnerability in subheader.php in PHP-Fusion 6.00.206 and earlier allows remote attackers to obtain the full path via unspecified vectors. | Assigned (20051122) | None (candidate not yet proposed) | View |
Page 18684 of 20943, showing 5 records out of 104715 total, starting on record 93416, ending on 93420