CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
13964 | CVE-2005-2758 | Candidate | Integer signedness error in the administrative interface for Symantec AntiVirus Scan Engine 4.0 and 4.3 allows remote attackers to execute arbitrary code via crafted HTTP headers with negative values, which lead to a heap-based buffer overflow. | Assigned (20050831) | None (candidate not yet proposed) | View | |
13965 | CVE-2005-2759 | Candidate | ** SPLIT ** The jlucaller program in LiveUpdate for Symantec Norton AntiVirus 9.0.3 on Macintosh runs setuid when executing Java programs, which allows local users to gain privileges. NOTE: due to a CNA error, this candidate was also originally assigned to an issue in DiskMountNotify. Use CVE-2005-3270 for the DiskMountNotify issue, and CVE-2005-2759 for the LiveUpdate issue. | Assigned (20050831) | None (candidate not yet proposed) | View | |
13966 | CVE-2005-2760 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20050831) | None (candidate not yet proposed) | View | |
13967 | CVE-2005-2761 | Candidate | Cross-site scripting (XSS) vulnerability in phpGroupWare 0.9.16.000 allows administrators to inject arbitrary web script or HTML by modifying the main screen message. | Assigned (20050831) | None (candidate not yet proposed) | View | |
13968 | CVE-2005-2762 | Candidate | Avaya VPNRemote before 4.2.33 stores credentials in cleartext in process memory, which allows attackers to obtain the VPN user"s credentials. | Assigned (20050831) | None (candidate not yet proposed) | View |
Page 18936 of 20943, showing 5 records out of 104715 total, starting on record 94676, ending on 94680