CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
23295 | CVE-2006-7191 | Candidate | Untrusted search path vulnerability in lamdaemon.pl in LDAP Account Manager (LAM) before 1.0.0 allows local users to gain privileges via a modified PATH that points to a malicious rm program. | Assigned (20070402) | None (candidate not yet proposed) | View | |
88831 | CVE-2016-2012 | Candidate | HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote attackers to bypass authentication via unspecified vectors. | Assigned (20160122) | None (candidate not yet proposed) | View | |
23551 | CVE-2007-0194 | Candidate | admin.php in MKPortal M1.1 RC1 allows remote attackers to obtain sensitive information via a direct request with an MK_PATH=1 query string, which reveals the path in an error message. | Assigned (20070110) | None (candidate not yet proposed) | View | |
89087 | CVE-2016-2268 | Candidate | Dell SecureWorks app before 2.1 for iOS does not validate SSL certificates, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | Assigned (20160208) | None (candidate not yet proposed) | View | |
23807 | CVE-2007-0450 | Candidate | Directory traversal vulnerability in Apache HTTP Server and Tomcat 5.x before 5.5.22 and 6.x before 6.0.10, when using certain proxy modules (mod_proxy, mod_rewrite, mod_jk), allows remote attackers to read arbitrary files via a .. (dot dot) sequence with combinations of (1) "/" (slash), (2) "" (backslash), and (3) URL-encoded backslash (%5C) characters in the URL, which are valid separators in Tomcat but not in Apache. | Assigned (20070123) | None (candidate not yet proposed) | View |
Page 20862 of 20943, showing 5 records out of 104715 total, starting on record 104306, ending on 104310