NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
22238 | CVE-2016-8889 | In Bitcoin Knots v0.11.0.ljr20150711 through v0.13.0.knots20160814 (fixed in v0.13.1.knots20161027), the debug console stores sensitive information including private keys and the wallet passphrase in its persistent command history. | 2 | 2.1 | Low | 2017-01-19 | 2016-11-29 | View | |
29918 | CVE-2014-1233 | The paratrooper-pingdom gem 1.0.0 for Ruby allows local users to obtain the App-Key, username, and password values by listing the curl process. | 2 | 2.1 | Low | 2017-01-19 | 2014-01-10 | View | |
36574 | CVE-2013-0218 | The GUI installer in JBoss Enterprise Application Platform (EAP) and Enterprise Web Platform (EWP) 5.2.0 and possibly 5.1.2 uses world-readable permissions for the auto-install XML file, which allows local users to obtain the administrator password and the sucker password by reading this file. | 2 | 2.1 | Low | 2017-01-18 | 2013-10-30 | View | |
45022 | CVE-2012-3427 | EC2 Amazon Machine Image (AMI) in JBoss Enterprise Application Platform (EAP) 5.1.2 uses 755 permissions for /var/cache/jboss-ec2-eap/, which allows local users to read sensitive information such as Amazon Web Services (AWS) credentials by reading files in the directory. | 2 | 2.1 | Low | 2017-01-19 | 2014-02-04 | View | |
58590 | CVE-2007-6595 | ClamAV 0.92 allows local users to overwrite arbitrary files via a symlink attack on (1) temporary files used by the cli_gentempfd function in libclamav/others.c or on (2) .ascii files used by sigtool, when utf16-decode is enabled. | 2 | 2.1 | Low | 2017-01-07 | 2011-03-07 | View |
Page 15861 of 17672, showing 5 records out of 88360 total, starting on record 79301, ending on 79305