CVE List

Id CVE No. Status Description Phase Votes Comments Actions
67598  CVE-2014-0189  Candidate  virt-who uses world-readable permissions for /etc/sysconfig/virt-who, which allows local users to obtain password for hypervisors by reading the file.  Assigned (20131203)  None (candidate not yet proposed)    View
49685  CVE-2011-1773  Candidate  virt-v2v before 0.8.4 does not preserve the VNC console password when converting a guest, which allows local users to bypass the intended VNC authentication by connecting without a password.  Assigned (20110419)  None (candidate not yet proposed)    View
64347  CVE-2013-4400  Candidate  virt-login-shell in libvirt 1.1.2 through 1.1.3 allows local users to overwrite arbitrary files and possibly gain privileges via unspecified environment variables or command-line arguments.  Assigned (20130612)  None (candidate not yet proposed)    View
55933  CVE-2012-2690  Candidate  virt-edit in libguestfs before 1.18.0 does not preserve the permissions from the original file and saves the new file with world-readable permissions when editing, which might allow local guest users to obtain sensitive information.  Assigned (20120514)  None (candidate not yet proposed)    View
6320  CVE-2002-1938  Candidate  Virgil CGI Scanner 0.9 allows remote attackers to execute arbitrary commands via the (1) tar (TARGET) or (2) zielport (ZIELPORT) parameters.  Assigned (20050629)  None (candidate not yet proposed)    View

Page 539 of 20943, showing 5 records out of 104715 total, starting on record 2691, ending on 2695

Actions