Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Raptor

#20872de 53,632
12CVSS total
Vulnerabilidades · 2
Média
1
Alta
1
PT-2007-6308
4.9
2007-10-05
Sun · Sun Solaris · CVE-2007-5225
Name of the Vulnerable Software and Affected Versions: Sun Solaris versions 8 through 10 Description: The issue is related to an integer signedness error in FIFO filesystems, specifically named pipes, which allows local users to read the contents of unspecified memory locations. This is achieved by providing a negative maximum length value to the I PEEK ioctl. Recommendations: For Sun Solaris versions 8 through 10, at the moment, there is no information about a newer version that contains a fix for this issue.
PT-2007-2412
7.1
2007-02-16
Ibm · Ibm Lotus Domino · CVE-2007-0977
Name of the Vulnerable Software and Affected Versions: IBM Lotus Domino versions R5 and R6 Description: The issue affects IBM Lotus Domino R5 and R6 WebMail when "Generate HTML for all fields" is enabled. It stores HTTPPassword hashes from names.nsf in a manner that allows access through Readviewentries and OpenDocument requests to the defaultview view. Recommendations: For IBM Lotus Domino versions R5 and R6, consider disabling the "Generate HTML for all fields" option as a temporary workaround to minimize the risk of exploitation. Restrict access to the names.nsf file and defaultview view to prevent unauthorized access to HTTPPassword hashes.