CVE List

Id CVE No. Status Description Phase Votes Comments Actions
3756  CVE-2001-0950  Candidate  ValiCert Enterprise Validation Authority (EVA) Administration Server 3.3 through 4.2.1 uses insufficiently random data to (1) generate session tokens for HSMs using the C rand function, or (2) generate certificates or keys using /dev/urandom instead of another source which blocks when the entropy pool is low, which could make it easier for local or remote attackers to steal tokens or certificates via brute force guessing.  Proposed (20020131)  ACCEPT(4) Baker, Cole, Frech, Green | NOOP(2) Foat, Wall    View
88427  CVE-2016-1608  Candidate  vaconfig/time in Novell Filr before 1.2 Security Update 3 and 2.0 before Security Update 2 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the ntpServer parameter.  Assigned (20160112)  None (candidate not yet proposed)    View
1225  CVE-1999-1245  Candidate  vacm ucd-snmp SNMP server, version 3.52, does not properly disable access to the public community string, which could allow remote attackers to obtain sensitive information.  Proposed (20010912)  ACCEPT(1) Frech | NOOP(3) Cole, Foat, Wall  Frech> http://www.securityfocus.com/archive/1/13130  View
57  CVE-1999-0057  Entry  Vacation program allows command execution by remote users through a sendmail command.        View
92019  CVE-2016-5200  Candidate  V8 in Google Chrome prior to 54.0.2840.98 for Mac, and 54.0.2840.99 for Windows, and 54.0.2840.100 for Linux, and 55.0.2883.84 for Android incorrectly applied type rules, which allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.  Assigned (20160531)  None (candidate not yet proposed)    View

Page 575 of 20943, showing 5 records out of 104715 total, starting on record 2871, ending on 2875

Actions