NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
87946 | CVE-2017-2298 | The mcollective-sshkey-security plugin before 0.5.1 for Puppet uses a server-specified identifier as part of a path where a file is written. A compromised server could use this to write a file to an arbitrary location on the client with the filename appended with the string _pub.pem. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-06 | View | |
88202 | CVE-2017-9313 | Multiple Cross-site scripting (XSS) vulnerabilities in Webmin before 1.850 allow remote attackers to inject arbitrary web script or HTML via the sec parameter to view_man.cgi, the referers parameter to change_referers.cgi, or the name parameter to save_user.cgi. NOTE: these issues were not fixed in 1.840. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
65931 | CVE-2005-0156 | Buffer overflow in the PerlIO implementation in Perl 5.8.0, when installed with setuid support (sperl), allows local users to execute arbitrary code by setting the PERLIO_DEBUG variable and executing a Perl script whose full pathname contains a long directory tree. | 2 | 2.1 | Low | 2017-07-18 | 2017-07-10 | View | |
66699 | CVE-2005-0950 | Directory traversal vulnerability in FastStone 4in1 Browser 1.2 allows remote attackers to read arbitrary files via a (1) ... (triple dot) or (2) .. (dot dot backslash) in the URL. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
68491 | CVE-2005-2805 | forum_post.php in e107 0.6 allows remote attackers to post to non-existent forums by modifying the forum number. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 17042 of 17672, showing 5 records out of 88360 total, starting on record 85206, ending on 85210