| 73286 |
CVE-2003-0139 |
Certain weaknesses in the implementation of version 4 of the Kerberos protocol (krb4) in the krb5 distribution, when triple-DES keys are used to key krb4 services, allow an attacker to create krb4 tickets for unauthorized principals using a cut-and-paste attack and "ticket splicing." |
|
2 |
7.5 |
High |
2017-01-03 |
2016-10-17 |
View
|
| 70460 |
CVE-2005-4871 |
Certain XML functions in IBM DB2 8.1 run with the privileges of DB2 instead of the logged-in user, which allows remote attackers to create or overwrite files via (1) XMLFileFromVarchar or (2) XMLFileFromClob, or read files via (3) XMLVarcharFromFile or (4) XMLClobFromFile. |
|
2 |
4.3 |
Medium |
2017-01-03 |
2016-10-17 |
View
|
| 47360 |
CVE-2009-0011 |
Certificate Assistant in Apple Mac OS X 10.5.6 allows local users to overwrite arbitrary files via unknown vectors related to an "insecure file operation" on a temporary file. |
|
2 |
7.2 |
High |
2017-01-07 |
2011-03-07 |
View
|
| 50047 |
CVE-2009-2825 |
Certificate Assistant in Apple Mac OS X before 10.6.2 does not properly handle a " |