NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
69404  CVE-2005-3766  Exponent CMS 0.96.3 and later versions stores sensitive user pages under the web document root with insufficient access control even though certain permissions are specified, which allows attackers to access the pages by browsing uploaded files.    Medium  2017-01-03  2008-09-05  View
70428  CVE-2005-4839  PureTLS before 0.9b5 does not clear optional Extensions and Algorithm.Parameters values before parsing, which might trigger an information leak of values from earlier certificates.    Medium  2017-01-03  2008-09-05  View
72988  CVE-2004-2611  The Change Permissions function in the Sophster suite before 0.9.6 28 May 2004 (aka 0.9.6-r5), possibly including Sophster, FreeSophster, and FreeSophsterPAM, removes the (1) setuid, (2) setgid, and (3) sticky bits when changing a file, which might allow attackers to gain privileges or conduct other unauthorized activities.    4.6  Medium  2016-12-20  2008-09-05  View
73500  CVE-2003-0366  lyskom-server 2.0.7 and earlier allows unauthenticated users to cause a denial of service (CPU consumption) via a large query.    Medium  2017-01-03  2008-09-05  View
73756  CVE-2003-0640  BEA WebLogic Server and Express, when using NodeManager to start servers, provides Operator users with privileges to overwrite usernames and passwords, which may allow Operators to gain Admin privileges.    10  High  2017-01-03  2008-09-05  View

Page 201 of 17672, showing 5 records out of 88360 total, starting on record 1001, ending on 1005

Actions