CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
67598 | CVE-2014-0189 | Candidate | virt-who uses world-readable permissions for /etc/sysconfig/virt-who, which allows local users to obtain password for hypervisors by reading the file. | Assigned (20131203) | None (candidate not yet proposed) | View | |
49685 | CVE-2011-1773 | Candidate | virt-v2v before 0.8.4 does not preserve the VNC console password when converting a guest, which allows local users to bypass the intended VNC authentication by connecting without a password. | Assigned (20110419) | None (candidate not yet proposed) | View | |
64347 | CVE-2013-4400 | Candidate | virt-login-shell in libvirt 1.1.2 through 1.1.3 allows local users to overwrite arbitrary files and possibly gain privileges via unspecified environment variables or command-line arguments. | Assigned (20130612) | None (candidate not yet proposed) | View | |
55933 | CVE-2012-2690 | Candidate | virt-edit in libguestfs before 1.18.0 does not preserve the permissions from the original file and saves the new file with world-readable permissions when editing, which might allow local guest users to obtain sensitive information. | Assigned (20120514) | None (candidate not yet proposed) | View | |
6320 | CVE-2002-1938 | Candidate | Virgil CGI Scanner 0.9 allows remote attackers to execute arbitrary commands via the (1) tar (TARGET) or (2) zielport (ZIELPORT) parameters. | Assigned (20050629) | None (candidate not yet proposed) | View |
Page 539 of 20943, showing 5 records out of 104715 total, starting on record 2691, ending on 2695