CVE List

Id CVE No. Status Description Phase Votes Comments Actions
26217  CVE-2007-2860  Candidate  user.php in BoastMachine 3.0 platinum allows remote authenticated users to gain privileges via a modified id parameter, as demonstrated by an edit_post action.  Assigned (20070524)  None (candidate not yet proposed)    View
6398  CVE-2002-2016  Candidate  User-mode Linux (UML) 2.4.17-8 does not restrict access to kernel address space, which allows local users to execute arbitrary code.  Assigned (20050714)  None (candidate not yet proposed)    View
20503  CVE-2006-4399  Candidate  User interface inconsistency in Workgroup Manager in Apple Mac OS X 10.4 through 10.4.7 appears to allow administrators to change the authentication type from crypt to ShadowHash passwords for accounts in a NetInfo parent, when such an operation is not actually supported, which could result in less secure password management than intended.  Assigned (20060828)  None (candidate not yet proposed)    View
35718  CVE-2008-5601  Candidate  User Engine Lite ASP stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file via a direct request for users.mdb.  Assigned (20081216)  None (candidate not yet proposed)    View
25423  CVE-2007-2066  Candidate  UseBB before 1.0.6 allows remote attackers to obtain sensitive information via a request with unspecified GET or POST parameters to an unspecified script, which reveals the path in an error message.  Assigned (20070417)  None (candidate not yet proposed)    View

Page 591 of 20943, showing 5 records out of 104715 total, starting on record 2951, ending on 2955

Actions