CVE List

Id CVE No. Status Description Phase Votes Comments Actions
14476  CVE-2005-3270  Candidate  Untrusted search path vulnerability in DiskMountNotify for Symantec Norton AntiVirus 9.0.3 allows local users to gain privileges by modifying the PATH to reference a malicious (1) ps or (2) grep file.  Assigned (20051020)  None (candidate not yet proposed)    View
47944  CVE-2011-0032  Candidate  Untrusted search path vulnerability in DirectShow in Microsoft Windows Vista SP1 and SP2, Windows 7 Gold and SP1, Windows Server 2008 R2 and R2 SP1, and Windows Media Center TV Pack for Windows Vista allows local users to gain privileges via a Trojan horse DLL in the current working directory, as demonstrated by a directory that contains a Digital Video Recording (.dvr-ms), Windows Recorded TV Show (.wtv), or .mpg file, aka "DirectShow Insecure Library Loading Vulnerability."  Assigned (20101210)  None (candidate not yet proposed)    View
31927  CVE-2008-1810  Candidate  Untrusted search path vulnerability in dbmsrv in SAP MaxDB 7.6.03.15 on Linux allows local users to gain privileges via a modified PATH environment variable.  Assigned (20080415)  None (candidate not yet proposed)    View
29114  CVE-2007-5757  Candidate  Untrusted search path vulnerability in db2pd in IBM DB2 Universal Database (UDB) 8 before FixPak 16 and 9 before Fix Pack 4 allows local users to gain root privileges via a modified DB2INSTANCE environment variable that points to a malicious library. NOTE: this might be the same issue as CVE-2008-0697.  Assigned (20071031)  None (candidate not yet proposed)    View
1212  CVE-1999-1232  Candidate  Untrusted search path vulnerability in day5datacopier in SGI IRIX 6.2 allows local users to execute arbitrary commands via a modified PATH environment variable that points to a malicious cp program.  Modified (20060503)  ACCEPT(1) Frech | NOOP(2) Cole, Foat    View

Page 869 of 20943, showing 5 records out of 104715 total, starting on record 4341, ending on 4345

Actions