CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10493  CVE-2004-2067  Candidate  SQL injection vulnerability in controlpanel.php in Jaws Framework and Content Management System 0.4 allows remote attackers to execute arbitrary SQL and bypass authentication via the (1) user, (2) password, or (3) crypted_password parameters.  Assigned (20050504)  None (candidate not yet proposed)    View
10238  CVE-2004-1811  Candidate  The SSL HTTP Server in HP Web-enabled Management Software 5.0 through 5.92, with anonymous access enabled, allows remote attackers to compromise the trusted certificates by uploading their own certificates.  Assigned (20050504)  None (candidate not yet proposed)    View
10239  CVE-2004-1812  Candidate  Multiple stack-based buffer overflows in Agent Common Services (1) cam.exe and (2) awservices.exe in Unicenter TNG 2.4 allow remote attackers to execute arbitrary code.  Assigned (20050504)  None (candidate not yet proposed)    View
12605  CVE-2005-1399  Candidate  FreeBSD 4.6 to 4.11 and 5.x to 5.4 uses insecure default permissions for the /dev/iir device, which allows local users to execute restricted ioctl calls to read or modify data on hardware that is controlled by the iir driver.  Assigned (20050503)  None (candidate not yet proposed)    View
12606  CVE-2005-1400  Candidate  The i386_get_ldt system call in FreeBSD 4.7 to 4.11 and 5.x to 5.4 allows local users to access sensitive kernel memory via arguments with negative or very large values.  Assigned (20050503)  None (candidate not yet proposed)    View

Page 19474 of 20943, showing 5 records out of 104715 total, starting on record 97366, ending on 97370

Actions