NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
2825  CVE-2008-2931  The do_change_type function in fs/namespace.c in the Linux kernel before 2.6.22 does not verify that the caller has the CAP_SYS_ADMIN capability, which allows local users to gain privileges or cause a denial of service by modifying the properties of a mountpoint.    6.9  Medium  2017-01-03  2012-11-26  View
68361  CVE-2005-2672  pwmconfig in LM_sensors before 2.9.1 creates temporary files insecurely, which allows local users to overwrite arbitrary files via a symlink attack on the fancontrol temporary file.    2.1  Low  2017-01-03  2011-03-07  View
3081  CVE-2008-3198  Mozilla Firefox 3.x before 3.0.1 allows remote attackers to inject arbitrary web script into a chrome document via unspecified vectors, as demonstrated by injection into a XUL error page. NOTE: this can be leveraged to execute arbitrary code using CVE-2008-2933.    7.5  High  2017-01-03  2008-09-10  View
68617  CVE-2005-2953  Cross-site scripting (XSS) vulnerability in merchant.mvc in MIVA Merchant 5 allows remote attackers to inject arbitrary web script or HTML via the Customer_Login parameter.    4.3  Medium  2017-01-03  2016-10-17  View
3337  CVE-2008-3456  phpMyAdmin before 2.11.8 does not sufficiently prevent its pages from using frames that point to pages in other domains, which makes it easier for remote attackers to conduct spoofing or phishing activities via a cross-site framing attack.    6.4  Medium  2017-01-03  2011-03-07  View

Page 2747 of 17672, showing 5 records out of 88360 total, starting on record 13731, ending on 13735

Actions