CVE List

Id CVE No. Status Description Phase Votes Comments Actions
23295  CVE-2006-7191  Candidate  Untrusted search path vulnerability in lamdaemon.pl in LDAP Account Manager (LAM) before 1.0.0 allows local users to gain privileges via a modified PATH that points to a malicious rm program.  Assigned (20070402)  None (candidate not yet proposed)    View
88831  CVE-2016-2012  Candidate  HPE Network Node Manager i (NNMi) 9.20, 9.23, 9.24, 9.25, 10.00, and 10.01 allows remote attackers to bypass authentication via unspecified vectors.  Assigned (20160122)  None (candidate not yet proposed)    View
23551  CVE-2007-0194  Candidate  admin.php in MKPortal M1.1 RC1 allows remote attackers to obtain sensitive information via a direct request with an MK_PATH=1 query string, which reveals the path in an error message.  Assigned (20070110)  None (candidate not yet proposed)    View
89087  CVE-2016-2268  Candidate  Dell SecureWorks app before 2.1 for iOS does not validate SSL certificates, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.  Assigned (20160208)  None (candidate not yet proposed)    View
23807  CVE-2007-0450  Candidate  Directory traversal vulnerability in Apache HTTP Server and Tomcat 5.x before 5.5.22 and 6.x before 6.0.10, when using certain proxy modules (mod_proxy, mod_rewrite, mod_jk), allows remote attackers to read arbitrary files via a .. (dot dot) sequence with combinations of (1) "/" (slash), (2) "" (backslash), and (3) URL-encoded backslash (%5C) characters in the URL, which are valid separators in Tomcat but not in Apache.  Assigned (20070123)  None (candidate not yet proposed)    View

Page 20862 of 20943, showing 5 records out of 104715 total, starting on record 104306, ending on 104310

Actions