CVE List

Id CVE No. Status Description Phase Votes Comments Actions
45550  CVE-2010-2966  Candidate  The INCLUDE_SECURITY functionality in Wind River VxWorks 6.x, 5.x, and earlier uses the LOGIN_USER_NAME and LOGIN_USER_PASSWORD (aka LOGIN_PASSWORD) parameters to create hardcoded credentials, which makes it easier for remote attackers to obtain access via a (1) telnet, (2) rlogin, or (3) FTP session.  Assigned (20100804)  None (candidate not yet proposed)    View
45806  CVE-2010-3222  Candidate  Stack-based buffer overflow in the Remote Procedure Call Subsystem (RPCSS) in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 allows local users to gain privileges via a crafted LPC message that requests an LRPC connection from an LPC server to a client, aka "LPC Message Buffer Overrun Vulnerability."  Assigned (20100903)  None (candidate not yet proposed)    View
46062  CVE-2010-3478  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20100921)  None (candidate not yet proposed)    View
46318  CVE-2010-3734  Candidate  The Install component in IBM DB2 UDB 9.5 before FP6a on Linux, UNIX, and Windows enforces an unintended limit on password length, which makes it easier for attackers to obtain access via a brute-force attack.  Assigned (20101005)  None (candidate not yet proposed)    View
46574  CVE-2010-3990  Candidate  Unspecified vulnerability in HP Virtual Server Environment before 6.2 allows remote attackers to read arbitrary files via unknown vectors.  Assigned (20101018)  None (candidate not yet proposed)    View

Page 18965 of 20943, showing 5 records out of 104715 total, starting on record 94821, ending on 94825

Actions