CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
12286 | CVE-2005-1080 | Candidate | Directory traversal vulnerability in the Java Archive Tool (Jar) utility in J2SE SDK 1.4.2 and 1.5, and OpenJDK, allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in filenames in a .jar file. | Assigned (20050412) | None (candidate not yet proposed) | View | |
12225 | CVE-2005-1019 | Candidate | Buffer overflow in the getConfig function in Aeon 0.2a and earlier allows local users to gain privileges via a long HOME environment variable. | Assigned (20050410) | None (candidate not yet proposed) | View | |
12226 | CVE-2005-1020 | Candidate | Secure Shell (SSH) 2 in Cisco IOS 12.0 through 12.3 allows remote attackers to cause a denial of service (device reload) (1) via a username that contains a domain name when using a TACACS+ server to authenticate, (2) when a new SSH session is in the login phase and a currently logged in user issues a send command, or (3) when IOS is logging messages and an SSH session is terminated while the server is sending data. | Assigned (20050410) | None (candidate not yet proposed) | View | |
12227 | CVE-2005-1021 | Candidate | Memory leak in Secure Shell (SSH) in Cisco IOS 12.0 through 12.3, when authenticating against a TACACS+ server, allows remote attackers to cause a denial of service (memory consumption) via an incorrect username or password. | Assigned (20050410) | None (candidate not yet proposed) | View | |
12228 | CVE-2005-1022 | Candidate | ColdFusion 6.1 Updater 1 places Java .class files under the web root in the /WEB-INF/cfclasses directory, which allows remote attackers to obtain sensitive information. | Assigned (20050410) | None (candidate not yet proposed) | View |
Page 19571 of 20943, showing 5 records out of 104715 total, starting on record 97851, ending on 97855