CVE List

Id CVE No. Status Description Phase Votes Comments Actions
9081  CVE-2004-0653  Candidate  Solaris 9, when configured as a Kerberos client with patch 112908-12 or 115168-03 and using pam_krb5 as an "auth" module with the debug feature enabled, records passwords in plaintext, which could allow local users to gain other user"s passwords by reading log files.  Assigned (20040709)  None (candidate not yet proposed)    View
9082  CVE-2004-0654  Candidate  Unknown vulnerability in the Basic Security Module (BSM), when configured to audit either the Administrative (ad) or the System-Wide Administration (as) audit class in Solaris 7, 8, and 9, allows local users to cause a denial of service (kernel panic).  Assigned (20040709)  None (candidate not yet proposed)    View
9083  CVE-2004-0655  Candidate  eupdatedb in esearch 0.6.1 and earlier allows local users to create arbitrary files via a symlink attack on the esearchdb.py.tmp temporary file.  Assigned (20040709)  None (candidate not yet proposed)    View
9084  CVE-2004-0656  Candidate  The accept_client function in PureFTPd 1.0.18 and earlier allows remote attackers to cause a denial of service by exceeding the maximum number of connections.  Assigned (20040709)  None (candidate not yet proposed)    View
9085  CVE-2004-0657  Candidate  Integer overflow in the NTP daemon (NTPd) before 4.0 causes the NTP server to return the wrong date/time offset when a client requests a date/time that is more than 34 years away from the server"s time.  Assigned (20040709)  None (candidate not yet proposed)    View

Page 20040 of 20943, showing 5 records out of 104715 total, starting on record 100196, ending on 100200

Actions