CVE List

Id CVE No. Status Description Phase Votes Comments Actions
42998  CVE-2010-0414  Candidate  gnome-screensaver before 2.28.2 allows physically proximate attackers to bypass screen locking and access an unattended workstation by moving the mouse position to an external monitor and then disconnecting that monitor.  Assigned (20100127)  None (candidate not yet proposed)    View
43254  CVE-2010-0670  Candidate  Unspecified vulnerability in the IP-Tech JQuarks (com_jquarks) Component before 0.2.4 for Joomla! allows attackers to obtain the installation path for Joomla! via unknown vectors.  Assigned (20100222)  None (candidate not yet proposed)    View
43510  CVE-2010-0926  Candidate  The default configuration of smbd in Samba before 3.3.11, 3.4.x before 3.4.6, and 3.5.x before 3.5.0rc3, when a writable share exists, allows remote authenticated users to leverage a directory traversal vulnerability, and access arbitrary files, by using the symlink command in smbclient to create a symlink containing .. (dot dot) sequences, related to the combination of the unix extensions and wide links options.  Assigned (20100305)  None (candidate not yet proposed)    View
43766  CVE-2010-1182  Candidate  Multiple unspecified vulnerabilities in the administrative console in IBM WebSphere Application Server (WAS) 7.0.x before 7.0.0.9 on z/OS have unknown impact and attack vectors.  Assigned (20100329)  None (candidate not yet proposed)    View
44022  CVE-2010-1438  Candidate  Web Application Finger Printer (WAFP) 0.01-26c3 uses fixed pathnames under /tmp for temporary files and directories, which (1) allows local users to cause a denial of service (application outage) by creating a file with a pathname that the product expects is available for its own internal use, (2) allows local users to overwrite arbitrary files via symlink attacks on certain files in /tmp, (3) might allow local users to delete arbitrary files and directories via a symlink attack on a directory under /tmp, and (4) might make it easier for local users to obtain sensitive information by reading files in a directory under /tmp, related to (a) lib/wafp_pidify.rb, (b) utils/generate_wafp_fingerprint.sh, (c) utils/online_update.sh, and (d) utils/extract_from_db.sh.  Assigned (20100415)  None (candidate not yet proposed)    View

Page 20196 of 20943, showing 5 records out of 104715 total, starting on record 100976, ending on 100980

Actions