NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
69090 | CVE-2005-3429 | Rockliffe MailSite Express before 6.1.22, with the option to save login information enabled, saves user passwords in plaintext in cookies, which allows local users to obtain passwords by reading the cookie file, or remote attackers to obtain the cookies via cross-site scripting (XSS) vulnerabilities. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
69346 | CVE-2005-3708 | Integer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via crafted TGA image files. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
70882 | CVE-2004-0435 | Certain "programming errors" in the msync system call for FreeBSD 5.2.1 and earlier, and 4.10 and earlier, do not properly handle the MS_INVALIDATE operation, which leads to cache consistency problems that allow a local user to prevent certain changes to files from being committed to disk. | 2 | 3.6 | Low | 2017-07-18 | 2017-07-10 | View | |
71138 | CVE-2004-0711 | The URL pattern matching feature in BEA WebLogic Server 6.x matches illegal patterns ending in "*" as wildcards as if they were the legal "/*" pattern, which could cause WebLogic 7.x to allow remote attackers to bypass intended access restrictions because the illegal patterns are properly rejected. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View | |
71394 | CVE-2004-0992 | Format string vulnerability in the -a option (daemon mode) in Proxytunnel before 1.2.3 allows remote attackers to execute arbitrary code via format string specifiers in an invalid proxy answer. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View |
Page 17218 of 17672, showing 5 records out of 88360 total, starting on record 86086, ending on 86090