NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
69423 | CVE-2005-3785 | Second-order symlink vulnerability in eix-sync.in in Ebuild IndeX (eix) before 0.5.0_pre2 allows local users to overwrite arbitrary files via a symlink attack on the exi.X.sync temporary file, which is processed by the diff-eix program. | 2 | 5 | Medium | 2017-01-03 | 2011-03-07 | View | |
4143 | CVE-2008-4315 | tog-pegasus in OpenGroup Pegasus 2.7.0 on Red Hat Enterprise Linux (RHEL) 5, Fedora 9, and Fedora 10 does not log failed authentication attempts to the OpenPegasus CIM server, which makes it easier for remote attackers to avoid detection of password guessing attacks. | 2 | 6.8 | Medium | 2017-01-03 | 2010-08-21 | View | |
69679 | CVE-2005-4041 | Cross-site scripting (XSS) vulnerability in search.cgi in MR CGI Guy Hot Links SQL 3.1.x and Hot Links Pro 3.1.x allows remote attackers to inject arbitrary web script or HTML via the query string. | 2 | 4.3 | Medium | 2017-01-03 | 2011-03-07 | View | |
4911 | CVE-2008-5127 | Ocean12 Contact Manager Pro 1.02 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to o12con.mdb. | 2 | 5 | Medium | 2017-01-03 | 2009-03-04 | View | |
70447 | CVE-2005-4858 | Multiple cross-site scripting (XSS) vulnerabilities in mimic2.cgi in mimicboard2 (Mimic2) 086 and earlier allow remote attackers to inject arbitrary web script or HTML via unspecified parameters associated with the (1) name, (2) title, and (3) comment sections, as demonstrated by referencing a remote document through the SRC attribute of an IFRAME element. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View |
Page 1696 of 17672, showing 5 records out of 88360 total, starting on record 8476, ending on 8480