CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11110  CVE-2004-2684  Candidate  Unspecified vulnerability in the %template package in InterSystems Cache" 5.0 allows attackers to access certain files on a server, including (1) cache.key and (2) cache.dat, related to .csp files under (a) Devstudio emplates and (b) Devuserstudio emplates.  Assigned (20070820)  None (candidate not yet proposed)    View
11109  CVE-2004-2683  Candidate  Unspecified vulnerability in the %XML.Utils.SchemaServer class in InterSystems Cache" 5.0 allows attackers to access arbitrary files on a server.  Assigned (20070820)  None (candidate not yet proposed)    View
11108  CVE-2004-2682  Candidate  PeerSec MatrixSSL before 1.1 does not implement RSA blinding, which allows context-dependent attackers to obtain the server"s private key by determining factors using timing differences on (1) the number of extra reductions during Montgomery reduction, and (2) the use of different integer multiplication algorithms ("Karatsuba" and normal), a related issue to CVE-2003-0147.  Assigned (20070705)  None (candidate not yet proposed)    View
11107  CVE-2004-2681  Candidate  PeerSec MatrixSSL before 1.1 caches session keys for an indefinitely long time, which might make it easier for remote attackers to hijack a session.  Assigned (20070705)  None (candidate not yet proposed)    View
11106  CVE-2004-2680  Candidate  mod_python (libapache2-mod-python) 3.1.4 and earlier does not properly handle when output filters process more than 16384 bytes, which can cause filter.read to return portions of previously freed memory.  Assigned (20070304)  None (candidate not yet proposed)    View

Page 18722 of 20943, showing 5 records out of 104715 total, starting on record 93606, ending on 93610

Actions