NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
78592 | CVE-2001-1157 | Baltimore Technologies WEBsweeper 4.0 and 4.02 does not properly filter Javascript from HTML pages, which could allow remote attackers to bypass the filtering via (1) an extra leading < and one or more characters before the SCRIPT tag, or (2) tags using Unicode. | 2 | 7.5 | High | 2017-01-05 | 2008-09-05 | View | |
77397 | CVE-2000-1165 | Balabit syslog-ng allows remote attackers to cause a denial of service (application crash) via a malformed log message that does not have a closing > in the priority specifier. | 2 | 5 | Medium | 2017-01-05 | 2011-02-04 | View | |
58432 | CVE-2007-6437 | Balabit syslog-ng 2.0.x before 2.0.6 and 2.1.x before 2.1.8 allows remote attackers to cause a denial of service (crash) via a message with a timestamp that does not contain a trailing space, which triggers a NULL pointer dereference. | 2 | 5 | Medium | 2017-01-07 | 2011-03-07 | View | |
7434 | CVE-2011-0343 | Balabit syslog-ng 2.0, 3.0, 3.1, 3.2 OSE and PE, when running on FreeBSD or HP-UX, does not properly perform cast operations, which causes syslog-ng to use a default value of -1 to create log files with insecure permissions (07777), which allows local users to read and write to these log files. | 2 | 6.9 | Medium | 2017-01-07 | 2011-02-25 | View | |
80186 | CVE-2002-1200 | Balabit Syslog-NG 1.4.x before 1.4.15, and 1.5.x before 1.5.20, when using template filenames or output, does not properly track the size of a buffer when constant characters are encountered during macro expansion, which allows remote attackers to cause a denial of service and possibly execute arbitrary code. | 2 | 7.5 | High | 2017-01-05 | 2016-10-17 | View |
Page 16182 of 17672, showing 5 records out of 88360 total, starting on record 80906, ending on 80910