CVE List

Id CVE No. Status Description Phase Votes Comments Actions
13916  CVE-2005-2710  Candidate  Format string vulnerability in Real HelixPlayer and RealPlayer 10 allows remote attackers to execute arbitrary code via the (1) image handle or (2) timeformat attribute in a RealPix (.rp) or RealText (.rt) file.  Assigned (20050826)  None (candidate not yet proposed)    View
13917  CVE-2005-2711  Candidate  ISS BlackIce 3.6, as used in multiple products including BlackICE PC Protection, Server Protection, Agent for Server, and RealSecure Desktop 3.6 and 7.0, does not drop privileges before launching help from the "More Info" button in the "Application Protection" dialog, which allows local users to execute arbitrary programs as SYSTEM.  Assigned (20050826)  None (candidate not yet proposed)    View
13918  CVE-2005-2712  Candidate  The LDAP server (nldap.exe) in IBM Lotus Domino before 7.0.1, 6.5.5, and 6.5.4 FP2 allows remote attackers to cause a denial of service (crash) via a long bind request, which triggers a null dereference.  Assigned (20050826)  None (candidate not yet proposed)    View
13919  CVE-2005-2713  Candidate  passwd in Directory Services in Mac OS X 10.3.x before 10.3.9 and 10.4.x before 10.4.5 allows local users to create arbitrary world-writable files as root by specifying an alternate file in the password database option.  Assigned (20050826)  None (candidate not yet proposed)    View
13920  CVE-2005-2714  Candidate  passwd in Directory Services in Mac OS X 10.3.x before 10.3.9 and 10.4.x before 10.4.5 allows local users to overwrite arbitrary files via a symlink attack on the .pwtmp.[PID] temporary file.  Assigned (20050826)  None (candidate not yet proposed)    View

Page 18948 of 20943, showing 5 records out of 104715 total, starting on record 94736, ending on 94740

Actions