Show filters
38 Total Results
Displaying 21-30 of 38
Sort by:
Attacker Value
Unknown
CVE-2003-1524
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
PGPi PGPDisk 6.0.2i does not unmount a PGP partition when the switch user function in Windows XP is used, which could allow local users to access data on another user's PGP partition.
0
Attacker Value
Unknown
CVE-2002-2069
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
PGP 6.x and 7.x does not clear Windows alternate data streams that are attached to files on NTFS file systems, which allows attackers to recover sensitive information that was supposed to be deleted.
0
Attacker Value
Unknown
CVE-2002-1696
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Microsoft Outlook plug-in PGP version 7.0, 7.0.3, and 7.0.4 silently saves a decrypted copy of a message to hard disk when "Automatically decrypt/verify when opening messages" option is checked, "Always use Secure Viewer when decrypting" option is not checked, and the user replies to an encrypted message.
0
Attacker Value
Unknown
CVE-2002-1977
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Network Associates PGP 7.0.4 and 7.1 does not time out according to the value set in the "Passphrase Cache" option, which could allow attackers to open encrypted files without providing a passphrase.
0
Attacker Value
Unknown
CVE-2002-0850
Disclosure Date: October 04, 2002 (last updated February 22, 2025)
Buffer overflow in PGP Corporate Desktop 7.1.1 allows remote attackers to execute arbitrary code via an encrypted document that has a long filename when it is decrypted.
0
Attacker Value
Unknown
CVE-2002-0788
Disclosure Date: August 12, 2002 (last updated February 22, 2025)
An interaction between PGP 7.0.3 with the "wipe deleted files" option, when used on Windows Encrypted File System (EFS), creates a cleartext temporary files that cannot be wiped or deleted due to strong permissions, which could allow certain local users or attackers with physical access to obtain cleartext information.
0
Attacker Value
Unknown
CVE-2002-0685
Disclosure Date: July 23, 2002 (last updated February 22, 2025)
Heap-based buffer overflow in the message decoding functionality for PGP Outlook Encryption Plug-In, as used in NAI PGP Desktop Security 7.0.4, Personal Security 7.0.3, and Freeware 7.0.3, allows remote attackers to modify the heap and gain privileges via a large, malformed mail message.
0
Attacker Value
Unknown
CVE-2001-1252
Disclosure Date: September 28, 2001 (last updated February 22, 2025)
Network Associates PGP Keyserver 7.0 allows remote attackers to bypass authentication and access the administrative web interface via URLs that directly access cgi-bin instead of keyserver/cgi-bin for the programs (1) console, (2) cs, (3) multi_config and (4) directory.
0
Attacker Value
Unknown
CVE-2001-1016
Disclosure Date: September 04, 2001 (last updated February 22, 2025)
PGP Corporate Desktop before 7.1, Personal Security before 7.0.3, Freeware before 7.0.3, and E-Business Server before 7.1 does not properly display when invalid userID's are used to sign a message, which could allow an attacker to make the user believe that the document has been signed by a trusted third party by adding a second, invalid user ID to a key which has already been signed by the third party, aka the "PGPsdk Key Validity Vulnerability."
0
Attacker Value
Unknown
CVE-2001-1456
Disclosure Date: September 04, 2001 (last updated February 22, 2025)
Buffer overflow in the (1) smap/smapd and (2) CSMAP daemons for Gauntlet Firewall 5.0 through 6.0 allows remote attackers to execute arbitrary code via a crafted mail message.
0