CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12286  CVE-2005-1080  Candidate  Directory traversal vulnerability in the Java Archive Tool (Jar) utility in J2SE SDK 1.4.2 and 1.5, and OpenJDK, allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in filenames in a .jar file.  Assigned (20050412)  None (candidate not yet proposed)    View
12225  CVE-2005-1019  Candidate  Buffer overflow in the getConfig function in Aeon 0.2a and earlier allows local users to gain privileges via a long HOME environment variable.  Assigned (20050410)  None (candidate not yet proposed)    View
12226  CVE-2005-1020  Candidate  Secure Shell (SSH) 2 in Cisco IOS 12.0 through 12.3 allows remote attackers to cause a denial of service (device reload) (1) via a username that contains a domain name when using a TACACS+ server to authenticate, (2) when a new SSH session is in the login phase and a currently logged in user issues a send command, or (3) when IOS is logging messages and an SSH session is terminated while the server is sending data.  Assigned (20050410)  None (candidate not yet proposed)    View
12227  CVE-2005-1021  Candidate  Memory leak in Secure Shell (SSH) in Cisco IOS 12.0 through 12.3, when authenticating against a TACACS+ server, allows remote attackers to cause a denial of service (memory consumption) via an incorrect username or password.  Assigned (20050410)  None (candidate not yet proposed)    View
12228  CVE-2005-1022  Candidate  ColdFusion 6.1 Updater 1 places Java .class files under the web root in the /WEB-INF/cfclasses directory, which allows remote attackers to obtain sensitive information.  Assigned (20050410)  None (candidate not yet proposed)    View

Page 19571 of 20943, showing 5 records out of 104715 total, starting on record 97851, ending on 97855

Actions