NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
87946  CVE-2017-2298  The mcollective-sshkey-security plugin before 0.5.1 for Puppet uses a server-specified identifier as part of a path where a file is written. A compromised server could use this to write a file to an arbitrary location on the client with the filename appended with the string _pub.pem.    4.3  Medium  2017-07-18  2017-07-06  View
88202  CVE-2017-9313  Multiple Cross-site scripting (XSS) vulnerabilities in Webmin before 1.850 allow remote attackers to inject arbitrary web script or HTML via the sec parameter to view_man.cgi, the referers parameter to change_referers.cgi, or the name parameter to save_user.cgi. NOTE: these issues were not fixed in 1.840.    4.3  Medium  2017-07-18  2017-07-10  View
65931  CVE-2005-0156  Buffer overflow in the PerlIO implementation in Perl 5.8.0, when installed with setuid support (sperl), allows local users to execute arbitrary code by setting the PERLIO_DEBUG variable and executing a Perl script whose full pathname contains a long directory tree.    2.1  Low  2017-07-18  2017-07-10  View
66699  CVE-2005-0950  Directory traversal vulnerability in FastStone 4in1 Browser 1.2 allows remote attackers to read arbitrary files via a (1) ... (triple dot) or (2) .. (dot dot backslash) in the URL.    Medium  2017-07-18  2017-07-10  View
68491  CVE-2005-2805  forum_post.php in e107 0.6 allows remote attackers to post to non-existent forums by modifying the forum number.    Medium  2017-07-18  2017-07-10  View

Page 17042 of 17672, showing 5 records out of 88360 total, starting on record 85206, ending on 85210

Actions