CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
9081 | CVE-2004-0653 | Candidate | Solaris 9, when configured as a Kerberos client with patch 112908-12 or 115168-03 and using pam_krb5 as an "auth" module with the debug feature enabled, records passwords in plaintext, which could allow local users to gain other user"s passwords by reading log files. | Assigned (20040709) | None (candidate not yet proposed) | View | |
9082 | CVE-2004-0654 | Candidate | Unknown vulnerability in the Basic Security Module (BSM), when configured to audit either the Administrative (ad) or the System-Wide Administration (as) audit class in Solaris 7, 8, and 9, allows local users to cause a denial of service (kernel panic). | Assigned (20040709) | None (candidate not yet proposed) | View | |
9083 | CVE-2004-0655 | Candidate | eupdatedb in esearch 0.6.1 and earlier allows local users to create arbitrary files via a symlink attack on the esearchdb.py.tmp temporary file. | Assigned (20040709) | None (candidate not yet proposed) | View | |
9084 | CVE-2004-0656 | Candidate | The accept_client function in PureFTPd 1.0.18 and earlier allows remote attackers to cause a denial of service by exceeding the maximum number of connections. | Assigned (20040709) | None (candidate not yet proposed) | View | |
9085 | CVE-2004-0657 | Candidate | Integer overflow in the NTP daemon (NTPd) before 4.0 causes the NTP server to return the wrong date/time offset when a client requests a date/time that is more than 34 years away from the server"s time. | Assigned (20040709) | None (candidate not yet proposed) | View |
Page 20040 of 20943, showing 5 records out of 104715 total, starting on record 100196, ending on 100200