CVE List

Id CVE No. Status Description Phase Votes Comments Actions
7919  CVE-2003-1095  Candidate  BEA WebLogic Server and Express 7.0 and 7.0.0.1, when using "memory" session persistence for web applications, does not clear authentication information when a web application is redeployed, which could allow users of that application to gain access without having to re-authenticate.  Assigned (20050311)  None (candidate not yet proposed)    View
7920  CVE-2003-1096  Candidate  The Cisco LEAP challenge/response authentication mechanism uses passwords in a way that is susceptible to dictionary attacks, which makes it easier for remote attackers to gain privileges via brute force password guessing attacks.  Assigned (20050311)  None (candidate not yet proposed)    View
7921  CVE-2003-1097  Candidate  Buffer overflow in rexec on HP-UX B.10.20, B.11.00, and B.11.04, when setuid root, may allow local users to gain privileges via a long -l option.  Assigned (20050311)  None (candidate not yet proposed)    View
7922  CVE-2003-1098  Candidate  The Xserver for HP-UX 11.22 was not properly built, which introduced a vulnerability that allows local users to gain privileges.  Assigned (20050311)  None (candidate not yet proposed)    View
7923  CVE-2003-1099  Candidate  shar on HP-UX B.11.00, B.11.04, and B.11.11 creates temporary files with predictable names in /tmp, which allows local users to cause a denial of service and possibly execute arbitrary code via a symlink attack.  Assigned (20050311)  None (candidate not yet proposed)    View

Page 19659 of 20943, showing 5 records out of 104715 total, starting on record 98291, ending on 98295

Actions