NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 56799 | CVE-2007-4679 | CFFTP in CFNetwork for Apple Mac OS X 10.4 through 10.4.10 allows remote FTP servers to force clients to connect to other hosts via crafted responses to FTP PASV commands. | 2 | 2.6 | Low | 2017-01-07 | 2013-08-02 | View | |
| 36278 | CVE-2014-9659 | cff/cf2intrp.c in the CFF CharString interpreter in FreeType before 2.5.4 proceeds with additional hints after the hint mask has been computed, which allows remote attackers to execute arbitrary code or cause a denial of service (stack-based buffer overflow) via a crafted OpenType font. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-2240. | 2 | 7.5 | High | 2017-01-19 | 2016-11-22 | View | |
| 36281 | CVE-2014-9662 | cff/cf2ft.c in FreeType before 2.5.4 does not validate the return values of point-allocation functions, which allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted OTF font. | 2 | 7.5 | High | 2017-01-19 | 2017-01-02 | View | |
| 68624 | CVE-2005-2960 | cfengine 1.6.5 and 2.1.16 allows local users to overwrite arbitrary files via a symlink attack on temporary files used by vicf.in, a different vulnerability than CVE-2005-3137. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View | |
| 6052 | CVE-2008-6321 | CF Shopkart 5.2.2 stores cfshopkart52.mdb under the web root with insufficient access control, which allows remote attackers to obtain sensitive information, such as usernames and passwords, via a direct request. | 2 | 5 | Medium | 2017-01-03 | 2009-02-27 | View |
Page 15342 of 17672, showing 5 records out of 88360 total, starting on record 76706, ending on 76710