NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
8222 | CVE-2011-1258 | Microsoft Internet Explorer 6 through 8 does not properly restrict web script, which allows user-assisted remote attackers to obtain sensitive information from a different (1) domain or (2) zone via vectors involving a drag-and-drop operation, aka "Drag and Drop Information Disclosure Vulnerability." | 2 | 4.3 | Medium | 2017-01-07 | 2011-07-18 | View | |
8478 | CVE-2011-1548 | The default configuration of logrotate on Debian GNU/Linux uses root privileges to process files in directories that permit non-root write access, which allows local users to conduct symlink and hard link attacks by leveraging logrotate"s lack of support for untrusted directories, as demonstrated by /var/log/postgresql/. | 2 | 6.3 | Medium | 2017-01-07 | 2011-04-20 | View | |
74014 | CVE-2003-0937 | SCO UnixWare 7.1.1, 7.1.3, and Open UNIX 8.0.0 allows local users to bypass protections for the "as" address space file for a process ID (PID) by obtaining a procfs file descriptor for the file and calling execve() on a setuid or setgid program, which leaves the descriptor open to the user. | 2 | 4.6 | Medium | 2017-01-03 | 2016-10-17 | View | |
74270 | CVE-2003-1198 | connection.c in Cherokee web server before 0.4.6 allows remote attackers to cause a denial of service via an HTTP POST request without a Content-Length header field. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
74526 | CVE-2003-1456 | Album.pl 6.1 allows remote attackers to execute arbitrary commands, when an alternative configuration file is used, via unknown attack vectors. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 1089 of 17672, showing 5 records out of 88360 total, starting on record 5441, ending on 5445