Latest CVE Feed
-
2.1
LOWCVE-2008-1970
muCommander before 0.8.2 stores credentials.xml with insecure permissions, which allows local users to obtain credentials.... Read more
Affected Products : mucommander- Published: Apr. 27, 2008
- Modified: Apr. 09, 2025
-
2.1
LOWCVE-2006-0382
Apple Mac OS X 10.4.5 and allows local users to cause a denial of service (crash) via an undocumented system call.... Read more
- Published: Feb. 14, 2006
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2006-0488
The VDM (Virtual DOS Machine) emulation environment for MS-DOS applications in Windows 2000, Windows XP SP2, and Windows Server 2003 allows local users to read the first megabyte of memory and possibly obtain sensitive information, as demonstrated by dump... Read more
- Published: Feb. 01, 2006
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2006-0379
FreeBSD kernel 5.4-STABLE and 6.0 does not completely initialize a buffer before making it available to userland, which could allow local users to read portions of kernel memory.... Read more
Affected Products : freebsd- Published: Jan. 25, 2006
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2006-1092
Unspecified vulnerability in the pagedata subsystem of the process file system (/proc) in Solaris 8 through 10 allows local users to cause a denial of service (system hang or panic) via unknown attack vectors that cause cause the kmem_oversize arena to al... Read more
- Published: Mar. 09, 2006
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-1999-0787
The SSH authentication agent follows symlinks via a UNIX domain socket.... Read more
Affected Products : ssh- Published: Sep. 17, 1999
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-1999-0803
The fwluser script in AIX eNetwork Firewall allows local users to write to arbitrary files via a symlink attack.... Read more
Affected Products : aix_enetwork_firewall- Published: May. 25, 1999
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-1999-0907
sccw allows local users to read arbitrary files.... Read more
Affected Products : soundcard_cw- Published: Sep. 16, 1999
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2006-0584
The PSCipher function in PeopleSoft People Tools 8.4x uses PKCS #5 with a fixed DES key to store user passwords, which makes it easier for local users to guess passwords using a dictionary attack that compares output strings.... Read more
Affected Products : peopletools- Published: Feb. 08, 2006
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2006-0838
IBM Tivoli Micromuse Netcool/NeuSecure 3.0.236 stores cleartext passwords in the (1) CMS_DBPASS, (2) CMSM_DBPASS, and (3) RPT_DBPASS fields in /etc/neusecure.conf, and in (4) /opt/NeuSecure/bin/ns_archiver.log, which allows local users to gain privileges.... Read more
Affected Products : netcool_neusecure- Published: Feb. 22, 2006
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-1999-0916
WebTrends software stores account names and passwords in a file which does not have restricted access permissions.... Read more
- Published: Jun. 29, 1999
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2006-0427
Unspecified vulnerability in BEA WebLogic Server and WebLogic Express 9.0 and 8.1 through SP5 allows malicious EJBs or servlet applications to decrypt system passwords, possibly by accessing functionality that should have been restricted.... Read more
Affected Products : weblogic_server- Published: Jan. 25, 2006
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-1999-0859
Solaris arp allows local users to read files via the -f parameter, which lists lines in the file that do not parse properly.... Read more
- Published: Dec. 01, 1999
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2008-2159
Microsoft Internet Explorer 7 can save encrypted pages in the cache even when the DisableCachingOfSSLPages registry setting is enabled, which might allow local users to obtain sensitive information.... Read more
Affected Products : internet_explorer- Published: May. 12, 2008
- Modified: Apr. 09, 2025
-
2.1
LOWCVE-2006-0431
Unspecified vulnerability in BEA WebLogic Server and WebLogic Express 8.1 SP5 allows untrusted applications to obtain the server's SSL identity via unknown attack vectors.... Read more
Affected Products : weblogic_server- Published: Jan. 25, 2006
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2006-0917
Melange Chat Server (aka M-Chat), when accessed via a web browser, automatically sends cookies and other sensitive information for a server to any port specified in the associated link, which allows local users on that server to read the cookies from HTTP... Read more
Affected Products : melange_chat_system- Published: Feb. 28, 2006
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2006-1056
The Linux kernel before 2.6.16.9 and the FreeBSD kernel, when running on AMD64 and other 7th and 8th generation AuthenticAMD processors, only save/restore the FOP, FIP, and FDP x87 registers in FXSAVE/FXRSTOR when an exception is pending, which allows one... Read more
- Published: Apr. 20, 2006
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2005-3276
The sys_get_thread_area function in process.c in Linux 2.6 before 2.6.12.4 and 2.6.13 does not clear a data structure before copying it to userspace, which might allow a user process to obtain sensitive information.... Read more
- Published: Oct. 21, 2005
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2006-0516
Unspecified vulnerability in the kernel processing in Solaris 10 64 bit platform, when running in 64-bit mode, allows local users to cause a denial of service (system panic) via unknown attack vectors.... Read more
Affected Products : solaris- Published: Feb. 02, 2006
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2005-0135
The unw_unwind_to_user function in unwind.c on Itanium (ia64) architectures in Linux kernel 2.6 allows local users to cause a denial of service (system crash).... Read more
Affected Products : linux_kernel- Published: May. 02, 2005
- Modified: Apr. 03, 2025