CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
65519 | CVE-2013-5572 | Candidate | Zabbix 2.0.5 allows remote authenticated users to discover the LDAP bind password by leveraging management-console access and reading the ldap_bind_password value in the HTML source code. | Assigned (20130823) | None (candidate not yet proposed) | View | |
240 | CVE-1999-0241 | Candidate | Guessable magic cookies in X Windows allows remote attackers to execute commands, e.g. through xterm. | Modified (19990925-01) | ACCEPT(3) Hill, Northcutt, Proctor | MODIFY(2) Frech, Prosser | NOOP(1) Baker | REVIEWING(1) Christey | Frech> Also add to references: | XF:sol-mkcookie | Prosser> additional source | Bugtraq | "X11 cookie hijacker" | http://www.securityfocus.com | Christey> The cookie hijacker thread has to do with stealing cookies | through a file with bad permissions. I"m not sure the | X-Force reference identifies this problem either. | Christey> CIAC:G-04 | URL:http://ciac.llnl.gov/ciac/bulletins/g-04.shtml | SGI:19960601-01-I | URL:ftp://patches.sgi.com/support/free/security/advisories/19960601-01-I | CERT:VB-95:08 | View |
65776 | CVE-2013-5829 | Candidate | Unspecified vulnerability in Oracle Java SE 7u40 and earlier, Java SE 6u60 and earlier, Java SE 5.0u51 and earlier, and Java SE Embedded 7u40 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to 2D, a different vulnerability than CVE-2013-5809. | Assigned (20130918) | None (candidate not yet proposed) | View | |
496 | CVE-1999-0498 | Candidate | TFTP is not running in a restricted directory, allowing a remote attacker to access sensitive information such as password files. | Modified (19990925-01) | ACCEPT(3) Blake, Hill, Northcutt | MODIFY(1) Frech | NOOP(1) Baker | REVIEWING(1) Christey | Frech> XF:linux-tftp | Christey> XF:linux-tftp refers to CVE-1999-0183 | View |
66032 | CVE-2013-6085 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20131011) | None (candidate not yet proposed) | View |
Page 19671 of 20943, showing 5 records out of 104715 total, starting on record 98351, ending on 98355