NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
3831 | CVE-2008-3969 | Multiple unspecified vulnerabilities in BitlBee before 1.2.3 allow remote attackers to "overwrite" and "hijack" existing accounts via unknown vectors related to "inconsistent handling of the USTATUS_IDENTIFIED state." NOTE: this issue exists because of an incomplete fix for CVE-2008-3920. | 2 | 7.5 | High | 2017-01-03 | 2009-08-19 | View | |
3832 | CVE-2008-3970 | pam_mount 0.10 through 0.45, when luserconf is enabled, does not verify mountpoint and source ownership before mounting a user-defined volume, which allows local users to bypass intended access restrictions via a local mount. | 2 | 6.9 | Medium | 2017-01-03 | 2009-08-19 | View | |
3833 | CVE-2008-3971 | Heap-based buffer overflow in the open_man_file function in callbacks.c in gmanedit 0.4.1 allows remote attackers to execute arbitrary code via a crafted man page, which is not properly handled during utf8 conversion. NOTE: another overflow was reported using a configuration file, but that vector does not have a scenario that crosses privilege boundaries. | 2 | 9.3 | High | 2017-01-03 | 2009-08-19 | View | |
3834 | CVE-2008-3972 | pkcs15-tool in OpenSC before 0.11.6 does not apply security updates to a smart card unless the card"s label matches the "OpenSC" string, which might allow physically proximate attackers to exploit vulnerabilities that the card owner expected were patched, as demonstrated by exploitation of CVE-2008-2235. | 2 | 6.6 | Medium | 2017-01-03 | 2009-03-25 | View | |
3835 | CVE-2008-3973 | Unspecified vulnerability in the SQL*Plus Windows GUI component in Oracle Database allows local users to affect confidentiality via unknown vectors. | 2 | 1.7 | Low | 2017-01-03 | 2012-10-22 | View |
Page 767 of 17672, showing 5 records out of 88360 total, starting on record 3831, ending on 3835