Show filters
27 Total Results
Displaying 21-27 of 27
Sort by:
Attacker Value
Unknown

CVE-2018-14582

Disclosure Date: July 24, 2018 (last updated November 27, 2024)
index.php?r=admini/admin/create in BageCMS V3.1.3 allows CSRF to add a background administrator account.
0
Attacker Value
Unknown

CVE-2014-5818

Disclosure Date: September 09, 2014 (last updated October 05, 2023)
The Tiny Tower (aka com.mobage.ww.a560.tinytower_android) application 1.7.0.8 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown

CVE-2013-4143

Disclosure Date: May 30, 2014 (last updated October 05, 2023)
The (1) checkPasswd and (2) checkGroupXlockPasswds functions in xlockmore before 5.43 do not properly handle when a NULL value is returned upon an error by the crypt or dispcrypt function as implemented in glibc 2.17 and later, which allows attackers to bypass the screen lock via vectors related to invalid salts.
0
Attacker Value
Unknown

CVE-2004-0278

Disclosure Date: November 23, 2004 (last updated February 22, 2025)
Ratbag game engine, as used in products such as Dirt Track Racing, Leadfoot, and World of Outlaws Spring Cars, allows remote attackers to cause a denial of service (CPU consumption) via a TCP packet that specifies the length of data to read and then sends a second TCP packet that contains less data than specified, which causes Ratbag to repeatedly check the socket for more data.
0
Attacker Value
Unknown

CVE-2000-0763

Disclosure Date: October 20, 2000 (last updated February 22, 2025)
xlockmore and xlockf do not properly cleanse user-injected format strings, which allows local users to gain root privileges via the -d option.
0
Attacker Value
Unknown

CVE-2000-0455

Disclosure Date: May 29, 2000 (last updated February 22, 2025)
Buffer overflow in xlockmore xlock program version 4.16 and earlier allows local users to read sensitive data from memory via a long -mode option.
0
Attacker Value
Unknown

CVE-2000-0355

Disclosure Date: August 21, 1999 (last updated February 22, 2025)
pg and pb in SuSE pbpg 1.x package allows an attacker to read arbitrary files.
0