NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
8480 | CVE-2011-1550 | The default configuration of logrotate on SUSE openSUSE Factory uses root privileges to process files in directories that permit non-root write access, which allows local users to conduct symlink and hard link attacks by leveraging logrotate"s lack of support for untrusted directories, as demonstrated by directories for the (1) cobbler, (2) inn, (3) safte-monitor, and (4) uucp packages. | 2 | 6.3 | Medium | 2017-01-07 | 2011-04-07 | View | |
74016 | CVE-2003-0939 | eo420_GetStringFromVarPart in veo420.c for SAP database server (SAP DB) 7.4.03.27 and earlier may allow remote attackers to execute arbitrary code via a connect packet with a 256 byte segment to the niserver (aka serv.exe) process on TCP port 7269, which prevents the server from NULL terminating the string and leads to a buffer overflow. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
8736 | CVE-2011-1856 | Cross-site scripting (XSS) vulnerability in HP Business Availability Center (BAC) 8.06 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | 2 | 4.3 | Medium | 2017-01-07 | 2011-09-06 | View | |
8992 | CVE-2011-2171 | Unspecified vulnerability in the dbugs package in Google Chrome OS before R12 0.12.433.38 Beta has unknown impact and attack vectors. | 2 | 10 | High | 2017-01-07 | 2012-01-18 | View | |
74528 | CVE-2003-1458 | SQL injection vulnerability in Profile.php in ttCMS 2.2 and ttForum allows remote attackers to execute arbitrary SQL commands via the member name. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View |
Page 1935 of 17672, showing 5 records out of 88360 total, starting on record 9671, ending on 9675