CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11315  CVE-2005-0109  Candidate  Hyper-Threading technology, as used in FreeBSD and other operating systems that are run on Intel Pentium and other processors, allows local users to use a malicious thread to create covert channels, monitor the execution of other threads, and obtain sensitive information such as cryptographic keys, via a timing attack on memory cache misses.  Assigned (20050118)  None (candidate not yet proposed)    View
11316  CVE-2005-0110  Candidate  Internet Explorer 6 on Windows XP SP2 allows remote attackers to bypass the file download warning dialog and possibly trick an unknowledgeable user into executing arbitrary code via a web page with a body element containing an onclick tag, as demonstrated using the createElement function.  Assigned (20050118)  None (candidate not yet proposed)    View
11317  CVE-2005-0111  Candidate  Stack-based buffer overflow in the websql CGI program in MySQL MaxDB 7.5.00 allows remote attackers to execute arbitrary code via a long password parameter.  Assigned (20050118)  None (candidate not yet proposed)    View
11318  CVE-2005-0112  Candidate  The web-based administrative interface for 3Com OfficeConnect Wireless 11g Access Point (AP) 1.00.08, and possibly earlier versions before 1.03.07A, allows remote attackers to bypass authentication and obtain sensitive information by directly accessing the (1) config.bin (2) profile.wlp?PN=ggg or (3) event.logs URLs.  Assigned (20050118)  None (candidate not yet proposed)    View
11319  CVE-2005-0113  Candidate  inpview in SGI IRIX allows local users to execute arbitrary commands via the SUN_TTSESSION_CMD environment variable, which is executed by inpview without dropping privileges.  Assigned (20050118)  None (candidate not yet proposed)    View

Page 19876 of 20943, showing 5 records out of 104715 total, starting on record 99376, ending on 99380

Actions