CVE List

Id CVE No. Status Description Phase Votes Comments Actions
11320  CVE-2005-0114  Candidate  vsdatant.sys in Zone Lab ZoneAlarm before 5.5.062.011, ZoneAlarm Wireless before 5.5.080.000, Check Point Integrity Client 4.x before 4.5.122.000 and 5.x before 5.1.556.166 do not properly verify that the ServerPortName argument to the NtConnectPort function is a valid memory address, which allows local users to cause a denial of service (system crash) when ZoneAlarm attempts to dereference an invalid pointer.  Assigned (20050118)  None (candidate not yet proposed)    View
11321  CVE-2005-0115  Candidate  Stack-based buffer overflow in DataRescue Interactive Disassembler (IDA) Pro 4.7 allows attackers to execute arbitrary code via a PE file with an Import Address Table containing a long import library name.  Assigned (20050118)  None (candidate not yet proposed)    View
11322  CVE-2005-0116  Candidate  AWStats 6.1, and other versions before 6.3, allows remote attackers to execute arbitrary commands via shell metacharacters in the configdir parameter to aswtats.pl.  Assigned (20050118)  None (candidate not yet proposed)    View
11275  CVE-2005-0069  Candidate  The (1) tcltags or (2) vimspell.sh scripts in vim 6.3 allow local users to overwrite or create arbitrary files via a symlink attack on temporary files.  Assigned (20050114)  None (candidate not yet proposed)    View
11276  CVE-2005-0070  Candidate  Synaesthesia 2.1 and earlier, and possibly other versions, when installed setuid root, does not drop privileges before processing configuration and mixer files, which allows local users to read arbitrary files.  Assigned (20050114)  None (candidate not yet proposed)    View

Page 19877 of 20943, showing 5 records out of 104715 total, starting on record 99381, ending on 99385

Actions