CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
14074 | CVE-2005-2868 | Candidate | ZipTorrent 1.3.7.3 stores sensitive information in plaintext in the pref.txt file, which allows local users to obtain sensitive information such as proxy server information and passwords. | Assigned (20050908) | None (candidate not yet proposed) | View | |
38239 | CVE-2009-0804 | Candidate | Ziproxy 2.6.0, when transparent interception mode is enabled, uses the HTTP Host header to determine the remote endpoint, which allows remote attackers to bypass access controls for Flash, Java, Silverlight, and probably other technologies, and possibly communicate with restricted intranet sites, via a crafted web page that causes a client to send HTTP requests with a modified Host header. | Assigned (20090304) | None (candidate not yet proposed) | View | |
64138 | CVE-2013-4191 | Candidate | zip.py in Plone 2.1 through 4.1, 4.2.x through 4.2.5, and 4.3.x through 4.3.1 does not properly enforce access restrictions when including content in a zip archive, which allows remote attackers to obtain sensitive information by reading a generated archive. | Assigned (20130612) | None (candidate not yet proposed) | View | |
1154 | CVE-1999-1174 | Candidate | ZIP drive for Iomega ZIP-100 disks allows attackers with physical access to the drive to bypass password protection by inserting a known disk with a known password, waiting for the ZIP drive to power down, manually replacing the known disk with the target disk, and using the known password to access the target disk. | Proposed (20010912) | ACCEPT(1) Cole | NOOP(2) Foat, Wall | View | |
96744 | CVE-2016-9924 | Candidate | Zimbra Collaboration Suite (ZCS) before 8.7.4 allows remote attackers to conduct XML External Entity (XXE) attacks. | Assigned (20161211) | None (candidate not yet proposed) | View |
Page 22 of 20943, showing 5 records out of 104715 total, starting on record 106, ending on 110