NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 67877 | CVE-2005-2175 | The web interface for Lotus Notes mail automatically processes HTML in an attachment without prompting the user to save or open it, which makes it easier for remote attackers to conduct web-based attacks and steal cookies. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 67876 | CVE-2005-2174 | Bugzilla 2.17.x, 2.18 before 2.18.2, 2.19.x, and 2.20 before 2.20rc1 inserts a bug into the database before it is marked private, which introduces a race condition and allows attackers to access information about the bug via buglist.cgi before MySQL replication is complete. | 2 | 2.6 | Low | 2017-01-03 | 2008-09-05 | View | |
| 67875 | CVE-2005-2173 | The Flag::validate and Flag::modify functions in Bugzilla 2.17.1 to 2.18.1 and 2.19.1 to 2.19.3 do not verify that the flag ID is appropriate for the given bug or attachment ID, which allows users to change flags on arbitrary bugs and obtain a bug summary via process_bug.cgi. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 67874 | CVE-2005-2170 | The LCF component (lcfd) in IBM Tivoli Management Framework Endpoint allows remote attackers to cause a denial of service (process exit and connection loss) by connecting to LCF and ending the connection without sending any data. | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View | |
| 67873 | CVE-2005-2169 | Directory traversal vulnerability in source.php in Quick & Dirty PHPSource Printer 1.1 and earlier allows remote attackers to read arbitrary files via ".../...//" sequences in the file parameter, which are reduced to "../" when PHPSource Printer uses a regular expression to remove "../" sequences. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 15074 of 17672, showing 5 records out of 88360 total, starting on record 75366, ending on 75370