NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
72992 | CVE-2004-2615 | The documentation for CuteNews 1.3.6 and possibly other versions specifies that files under cutenews/data must be manually given world-writable permissions, which allows local users to insert false news, delete news, and possibly gain privileges or have other unknown impact. | 2 | 4.6 | Medium | 2016-12-20 | 2008-09-05 | View | |
73760 | CVE-2003-0644 | Kdbg 1.1.0 through 1.2.8 does not check permissions of the .kdbgrc file, which allows local users to execute arbitrary commands. | 2 | 4.6 | Medium | 2017-01-03 | 2008-09-05 | View | |
8480 | CVE-2011-1550 | The default configuration of logrotate on SUSE openSUSE Factory uses root privileges to process files in directories that permit non-root write access, which allows local users to conduct symlink and hard link attacks by leveraging logrotate"s lack of support for untrusted directories, as demonstrated by directories for the (1) cobbler, (2) inn, (3) safte-monitor, and (4) uucp packages. | 2 | 6.3 | Medium | 2017-01-07 | 2011-04-07 | View | |
8736 | CVE-2011-1856 | Cross-site scripting (XSS) vulnerability in HP Business Availability Center (BAC) 8.06 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-07 | 2011-09-06 | View | |
9248 | CVE-2011-2467 | SQL injection vulnerability in lsassd in Lsass in the Likewise Security Authority in Likewise Open 5.4 through 6.1, and Likewise Enterprise 6.0, allows local users to execute arbitrary SQL commands via unspecified vectors. | 2 | 5.8 | Medium | 2017-01-07 | 2011-09-06 | View |
Page 1161 of 17672, showing 5 records out of 88360 total, starting on record 5801, ending on 5805