NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
46637 | CVE-2012-5509 | aeolus-configserver-setup in the Aeolas Configuration Server, as used in Red Hat CloudForms Cloud Engine before 1.1.2, uses world-readable permissions for a temporary file in /tmp, which allows local users to read credentials by reading this file. | 2 | 2.1 | Low | 2017-01-19 | 2013-03-18 | View | |
88197 | CVE-2017-8893 | AeroAdmin 4.1 uses a function to copy data between two pointers where the size of the data copied is taken directly from a network packet. This can cause a buffer overflow and denial of service. | 2 | 5 | Medium | 2017-07-18 | 2017-07-07 | View | |
88198 | CVE-2017-8894 | AeroAdmin 4.1 uses an insecure protocol (HTTP) to perform software updates. An attacker can hijack an update via man-in-the-middle in order to execute code in the machine. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-07 | View | |
3342 | CVE-2008-3464 | afd.sys in the Ancillary Function Driver (AFD) component in Microsoft Windows XP SP2 and SP3 and Windows Server 2003 SP1 and SP2 does not properly validate input sent from user mode to the kernel, which allows local users to gain privileges via a crafted application, as demonstrated using crafted pointers and lengths that bypass intended ProbeForRead and ProbeForWrite restrictions, aka "AFD Kernel Overwrite Vulnerability." | 2 | 7.2 | High | 2017-01-03 | 2011-03-07 | View | |
42290 | CVE-2012-0149 | afd.sys in the Ancillary Function Driver in Microsoft Windows Server 2003 SP2 does not properly validate user-mode input passed to kernel mode, which allows local users to gain privileges via a crafted application, aka "Ancillary Function Driver Elevation of Privilege Vulnerability." | 2 | 7.2 | High | 2017-01-19 | 2016-10-24 | View |
Page 885 of 17672, showing 5 records out of 88360 total, starting on record 4421, ending on 4425