CVE List

Id CVE No. Status Description Phase Votes Comments Actions
10657  CVE-2004-2231  Candidate  Zero G Software InstallAnywhere 5.0.6, 5.0.7, and earlier allows local users to overwrite arbitrary files via a symlink attack on the (1) persistent_state or (2) env.properties.X temporary files.  Assigned (20050717)  None (candidate not yet proposed)    View
4697  CVE-2002-0305  Candidate  Zero One Tech (ZOT) P100s print server does not properly disable the SNMP service or change the default password, which could leave the server open to attack without the administrator"s knowledge.  Modified (20050528)  MODIFY(1) Frech | NOOP(4) Cole, Cox, Foat, Wall  Frech> XF:zot-default-snmp-string(8270)  View
6086  CVE-2002-1704  Candidate  Zeroboard 4.1, when the "allow_url_fopen" and "register_globals" variables are enabled, allows remote attackers to execute arbitrary PHP code by modifying the _zb_path parameter to reference a URL on a remote web server that contains the code.  Assigned (20050621)  None (candidate not yet proposed)    View
3410  CVE-2001-0597  Candidate  Zetetic Secure Tool for Recalling Important Passwords (STRIP) 0.5 and earlier for the PalmOS allows a local attacker to recover passwords via a brute force attack. This attack is made feasible by STRIP"s use of SysRandom, which is seeded by TimeGetTicks, and an implementation flaw which vastly reduces the password "search space".  Proposed (20010727)  ACCEPT(3) Cole, Frech, Ziese | NOOP(2) Foat, Wall | REVIEWING(1) Bishop  Frech> CONFIRM:http://www.zetetic.net/docs/bugs/security_04-09-2001. | html  View
863  CVE-1999-0883  Entry  Zeus web server allows remote attackers to read arbitrary files by specifying the file name in an option to the search engine.        View

Page 20918 of 20943, showing 5 records out of 104715 total, starting on record 104586, ending on 104590

Actions