CVE List

Id CVE No. Status Description Phase Votes Comments Actions
12792  CVE-2005-1586  Candidate  Quick.Forum 2.1.6 stores potentially sensitive information such as usernames, banned IP addresses, censored words, and backups under the web document root, which allows remote attackers to obtain that information via a direct request to (1) db/users.txt, (2) db/banList.txt, (3) db/censureWords.txt, or (4) backup files.  Assigned (20050514)  None (candidate not yet proposed)    View
78328  CVE-2015-1051  Candidate  Open redirect vulnerability in the Context UI module in the Context module 7.x-3.x before 7.x-3.6 for Drupal allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the destination parameter.  Assigned (20150115)  None (candidate not yet proposed)    View
13048  CVE-2005-1842  Candidate  VCNative for Adobe Version Cue 1.0 and 1.0.1, as used in Creative Suite 1.0 and 1.3, and when running on Mac OS X with Version Cue Workspace, creates temporary log files with predictable names, which allows local users to modify arbitrary files via a symlink attack.  Assigned (20050603)  None (candidate not yet proposed)    View
78584  CVE-2015-1307  Candidate  plasma-workspace before 5.1.95 allows remote attackers to obtain passwords via a Trojan horse Look and Feel package.  Assigned (20150122)  None (candidate not yet proposed)    View
13304  CVE-2005-2098  Candidate  The KEYCTL_JOIN_SESSION_KEYRING operation in the Linux kernel before 2.6.12.5 contains an error path that does not properly release the session management semaphore, which allows local users or remote attackers to cause a denial of service (semaphore hang) via a new session keyring (1) with an empty name string, (2) with a long name string, (3) with the key quota reached, or (4) ENOMEM.  Assigned (20050630)  None (candidate not yet proposed)    View

Page 19714 of 20943, showing 5 records out of 104715 total, starting on record 98566, ending on 98570

Actions