CVE List

Id CVE No. Status Description Phase Votes Comments Actions
37486  CVE-2009-0051  Candidate  ZXID 0.29 and earlier does not properly check the return value from the OpenSSL DSA_verify function, which allows remote attackers to bypass validation of the certificate chain via a malformed SSL/TLS signature, a similar vulnerability to CVE-2008-5077.  Assigned (20090107)  None (candidate not yet proposed)    View
24943  CVE-2007-1586  Candidate  ZynOS 3.40 allows remote attackers to cause a denial of service (link restart) by sending a request for the name M via the SMB Mail Slot Protocol.  Assigned (20070321)  None (candidate not yet proposed)    View
33304  CVE-2008-3187  Candidate  zypp-refresh-patches in zypper in SUSE openSUSE 10.2, 10.3, and 11.0 does not ask the user before accepting repository keys, which allows remote repositories to cause a denial of service (package data corruption) via a spoofed key.  Assigned (20080716)  None (candidate not yet proposed)    View
53663  CVE-2012-0420  Candidate  zypp-refresh-wrapper in SUSE Zypper before 1.3.20 and 1.6.x before 1.6.166 allows local users to create files in arbitrary directories, or possibly have unspecified other impact, via a pathname in the ZYPP_LOCKFILE_ROOT environment variable.  Assigned (20120109)  None (candidate not yet proposed)    View
18666  CVE-2006-2562  Candidate  ZyXEL P-335WT router allows remote attackers to bypass access restrictions and conduct unauthorized operations via a UPnP request with a modified InternalClient parameter, which is not validated, as demonstrated by using AddPortMapping to forward arbitrary traffic.  Assigned (20060523)  None (candidate not yet proposed)    View

Page 20937 of 20943, showing 5 records out of 104715 total, starting on record 104681, ending on 104685

Actions