CVE List

Id CVE No. Status Description Phase Votes Comments Actions
34218  CVE-2008-4101  Candidate  Vim 3.0 through 7.x before 7.2.010 does not properly escape characters, which allows user-assisted attackers to (1) execute arbitrary shell commands by entering a K keystroke on a line that contains a ";" (semicolon) followed by a command, or execute arbitrary Ex commands by entering an argument after a (2) "Ctrl-]" (control close-square-bracket) or (3) "g]" (g close-square-bracket) keystroke sequence, a different issue than CVE-2008-2712.  Assigned (20080915)  None (candidate not yet proposed)    View
3226  CVE-2001-0408  Entry  vim (aka gvim) processes VIM control codes that are embedded in a file, which could allow attackers to execute arbitrary commands when another user opens a file containing malicious VIM control codes.        View
3227  CVE-2001-0409  Entry  vim (aka gvim) allows local users to modify files being edited by other users via a symlink attack on the backup and swap files, when the victim is editing the file in a world writable directory.        View
22006  CVE-2006-5902  Candidate  viksoe GMail Drive shell extension allows remote attackers to perform virtual filesystem actions via e-mail messages with certain subject lines, as demonstrated by (1) a GMAILFS: [13;a;1] message with a new filename and a file attachment, which injects a new file into the filesystem; (2) a GMAILFS: [13;a;1] message with an existing filename and a file attachment, which overwrites existing file content; and (3) a GMAILFS: [14;a;1] message, which creates a folder.  Assigned (20061115)  None (candidate not yet proposed)    View
27446  CVE-2007-4089  Candidate  Vikingboard 0.1.2 allows remote attackers to obtain sensitive information via the debug parameter to (1) forum.php, (2) cp.php, and possibly other unspecified components.  Assigned (20070730)  None (candidate not yet proposed)    View

Page 543 of 20943, showing 5 records out of 104715 total, starting on record 2711, ending on 2715

Actions