CVE List

Id CVE No. Status Description Phase Votes Comments Actions
25423  CVE-2007-2066  Candidate  UseBB before 1.0.6 allows remote attackers to obtain sensitive information via a request with unspecified GET or POST parameters to an unspecified script, which reveals the path in an error message.  Assigned (20070417)  None (candidate not yet proposed)    View
35718  CVE-2008-5601  Candidate  User Engine Lite ASP stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for users.mdb.  Assigned (20081216)  None (candidate not yet proposed)    View
20503  CVE-2006-4399  Candidate  User interface inconsistency in Workgroup Manager in Apple Mac OS X 10.4 through 10.4.7 appears to allow administrators to change the authentication type from crypt to ShadowHash passwords for accounts in a NetInfo parent, when such an operation is not actually supported, which could result in less secure password management than intended.  Assigned (20060828)  None (candidate not yet proposed)    View
6398  CVE-2002-2016  Candidate  User-mode Linux (UML) 2.4.17-8 does not restrict access to kernel address space, which allows local users to execute arbitrary code.  Assigned (20050714)  None (candidate not yet proposed)    View
26217  CVE-2007-2860  Candidate  user.php in BoastMachine 3.0 platinum allows remote authenticated users to gain privileges via a modified id parameter, as demonstrated by an edit_post action.  Assigned (20070524)  None (candidate not yet proposed)    View

Page 20353 of 20943, showing 5 records out of 104715 total, starting on record 101761, ending on 101765

Actions