CVE List

Id CVE No. Status Description Phase Votes Comments Actions
76880  CVE-2014-9579  Candidate  VDG Security SENSE (formerly DIVA) 2.3.13 stores administrator credentials in cleartext, which allows attackers to obtain sensitive information by reading the plugin configuration files.  Assigned (20150108)  None (candidate not yet proposed)    View
76878  CVE-2014-9577  Candidate  VDG Security SENSE (formerly DIVA) 2.3.13 sends the user database when a user logs in, which allows remote authenticated users to obtain usernames and password hashes by logging in to TCP port 51410 and reading the response.  Assigned (20150108)  None (candidate not yet proposed)    View
76879  CVE-2014-9578  Candidate  VDG Security SENSE (formerly DIVA) 2.3.13 performs authentication with a password hash instead of a password, which allows remote attackers to gain login access by leveraging knowledge of a password hash.  Assigned (20150108)  None (candidate not yet proposed)    View
76877  CVE-2014-9576  Candidate  VDG Security SENSE (formerly DIVA) 2.3.13 has a hardcoded password of (1) ArpaRomaWi for the root Postgres account and !DVService for the (2) postgres and (3) NTP Windows user accounts, which allows remote attackers to obtain access.  Assigned (20150108)  None (candidate not yet proposed)    View
13048  CVE-2005-1842  Candidate  VCNative for Adobe Version Cue 1.0 and 1.0.1, as used in Creative Suite 1.0 and 1.3, and when running on Mac OS X with Version Cue Workspace, creates temporary log files with predictable names, which allows local users to modify arbitrary files via a symlink attack.  Assigned (20050603)  None (candidate not yet proposed)    View

Page 564 of 20943, showing 5 records out of 104715 total, starting on record 2816, ending on 2820

Actions