NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
22238  CVE-2016-8889  In Bitcoin Knots v0.11.0.ljr20150711 through v0.13.0.knots20160814 (fixed in v0.13.1.knots20161027), the debug console stores sensitive information including private keys and the wallet passphrase in its persistent command history.    2.1  Low  2017-01-19  2016-11-29  View
29918  CVE-2014-1233  The paratrooper-pingdom gem 1.0.0 for Ruby allows local users to obtain the App-Key, username, and password values by listing the curl process.    2.1  Low  2017-01-19  2014-01-10  View
36574  CVE-2013-0218  The GUI installer in JBoss Enterprise Application Platform (EAP) and Enterprise Web Platform (EWP) 5.2.0 and possibly 5.1.2 uses world-readable permissions for the auto-install XML file, which allows local users to obtain the administrator password and the sucker password by reading this file.    2.1  Low  2017-01-18  2013-10-30  View
45022  CVE-2012-3427  EC2 Amazon Machine Image (AMI) in JBoss Enterprise Application Platform (EAP) 5.1.2 uses 755 permissions for /var/cache/jboss-ec2-eap/, which allows local users to read sensitive information such as Amazon Web Services (AWS) credentials by reading files in the directory.    2.1  Low  2017-01-19  2014-02-04  View
58590  CVE-2007-6595  ClamAV 0.92 allows local users to overwrite arbitrary files via a symlink attack on (1) temporary files used by the cli_gentempfd function in libclamav/others.c or on (2) .ascii files used by sigtool, when utf16-decode is enabled.    2.1  Low  2017-01-07  2011-03-07  View

Page 15861 of 17672, showing 5 records out of 88360 total, starting on record 79301, ending on 79305

Actions