CVE List

Id CVE No. Status Description Phase Votes Comments Actions
76937  CVE-2014-9636  Candidate  unzip 6.0 allows remote attackers to cause a denial of service (out-of-bounds read or write and crash) via an extra field with an uncompressed size smaller than the compressed field size in a zip archive that advertises STORED method compression.  Assigned (20150122)  None (candidate not yet proposed)    View
11808  CVE-2005-0602  Candidate  Unzip 5.51 and earlier does not properly warn the user when extracting setuid or setgid files, which may allow local users to gain privileges.  Assigned (20050301)  None (candidate not yet proposed)    View
100716  CVE-2017-3896  Candidate  Unvalidated parameter vulnerability in the remote log viewing capability in Intel Security McAfee Agent 5.0.x versions prior to 5.0.4.449 allows remote attackers to pass unexpected input parameters via a URL that was not completely validated.  Assigned (20161226)  None (candidate not yet proposed)    View
45749  CVE-2010-3165  Candidate  Untrusted search path vulnerability in Yokka NoEditor 1.33.1.1 and earlier, OuiEditor 1.6.1.1 and earlier, UnEditor 1.10.1.2 and earlier, DeuxEditor 1.7.1.2 and earlier, SQLEditorXP 3.14.1.2 and earlier, SQLEditorTE 1.9.1.3 and earlier, SQLEditor8 3.8.1.2 and earlier, and SQLEditorClassic 1.8.1.3 and earlier allows local users to gain privileges via a Trojan horse executable file in the current working directory.  Assigned (20100827)  None (candidate not yet proposed)    View
29524  CVE-2007-6167  Candidate  Untrusted search path vulnerability in yast2-core in SUSE Linux might allow local users to execute arbitrary code by creating a malicious yast2 module in the current working directory.  Assigned (20071128)  None (candidate not yet proposed)    View

Page 816 of 20943, showing 5 records out of 104715 total, starting on record 4076, ending on 4080

Actions