NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
30539  CVE-2014-2040  Multiple cross-site scripting (XSS) vulnerabilities in the (1) callback_multicheck, (2) callback_radio, and (3) callback_wysiwygin functions in mfrh_class.settings-api.php in the Media File Renamer plugin 1.7.0 for WordPress allow remote authenticated users with permissions to add media or edit media to inject arbitrary web script or HTML via unspecified parameters, as demonstrated by the title of an uploaded file.    2.1  Low  2017-01-19  2014-03-07  View
62539  CVE-2006-3878  Opsware Network Automation System (NAS) 6.0 installs /etc/init.d/mysql with insecure permissions, which allows local users to read the root password for the MySQL MAX database or gain privileges by modifying /etc/init.d/mysql.    2.1  Low  2016-12-20  2008-09-05  View
68428  CVE-2005-2739  Keychain Access in Mac OS X 10.4.2 and earlier keeps a password visible even if a keychain times out while the password is being viewed, which could allow attackers with physical access to obtain the password.    2.1  Low  2017-07-18  2017-07-10  View
70988  CVE-2004-0559  The maketemp.pl script in Usermin 1.070 and 1.080 allows local users to overwrite arbitrary files at install time via a symlink attack on the /tmp/.usermin directory.    2.1  Low  2017-07-18  2017-07-10  View
71500  CVE-2004-1108  qpkg in Gentoolkit 0.2.0_pre10 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary directory.    2.1  Low  2017-07-18  2017-07-10  View

Page 15580 of 17672, showing 5 records out of 88360 total, starting on record 77896, ending on 77900

Actions