Show filters
27 Total Results
Displaying 21-27 of 27
Sort by:
Attacker Value
Unknown
CVE-2014-0199
Disclosure Date: May 29, 2014 (last updated October 05, 2023)
The setup script in ovirt-engine-reports, as used in the Red Hat Enterprise Virtualization reports (rhevm-reports) package before 3.3.3, stores the reports database password in cleartext, which allows local users to obtain sensitive information by reading an unspecified file.
0
Attacker Value
Unknown
CVE-2014-0201
Disclosure Date: May 29, 2014 (last updated October 05, 2023)
ovirt-engine-reports, as used in the Red Hat Enterprise Virtualization reports package (rhevm-reports) before 3.3.3, uses world-readable permissions on configuration files, which allows local users to obtain sensitive information by reading the files.
0
Attacker Value
Unknown
CVE-2011-1104
Disclosure Date: February 28, 2011 (last updated October 04, 2023)
Multiple cross-site request forgery (CSRF) vulnerabilities in Mutare EVM allow remote attackers to hijack the authentication of arbitrary users for requests that (1) change a PIN, (2) delete messages, (3) add a delivery address, or (4) change a delivery address.
0
Attacker Value
Unknown
CVE-2011-1105
Disclosure Date: February 28, 2011 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Mutare EVM allow remote attackers to inject arbitrary web script or HTML via (1) a delivery address and possibly (2) a PIN.
0
Attacker Value
Unknown
CVE-2007-6133
Disclosure Date: November 27, 2007 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in admin/kfm/initialise.php in DevMass Shopping Cart 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the kfm_base_path parameter.
0
Attacker Value
Unknown
CVE-2007-3124
Disclosure Date: June 07, 2007 (last updated October 04, 2023)
Buffer overflow in backup/src/vmsbackup.c (aka the backup utility) in FreeVMS before 0.3.6 might allow local users to gain privileges via a long string in response to an "extract [ny]" prompt.
0
Attacker Value
Unknown
CVE-2001-0845
Disclosure Date: December 06, 2001 (last updated February 22, 2025)
Vulnerability in DECwindows Motif Server on OpenVMS VAX or Alpha 6.2 through 7.3, and SEVMS VAX or Alpha 6.2, allows local users to gain access to unauthorized resources.
0