NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
68673  CVE-2005-3009  Cross-site scripting (XSS) vulnerability in CuteNews allows remote attackers to inject arbitrary web script or HTML via the mod parameter to index.php.    4.3  Medium  2017-01-03  2008-09-05  View
68674  CVE-2005-3010  Direct static code injection vulnerability in the flood protection feature in inc/shows.inc.php in CuteNews 1.4.0 and earlier allows remote attackers to execute arbitrary PHP code via the HTTP_CLIENT_IP header (Client-Ip), which is injected into data/flood.db.php.    7.5  High  2017-01-03  2008-09-05  View
68675  CVE-2005-3011  The sort_offline function for texindex in texinfo 4.8 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files.    1.2  Low  2017-01-03  2011-07-25  View
68676  CVE-2005-3012  The MasterDataCD::createImage function in masterdatacd.cpp for SimpleCDR-X 1.3.3 creates the .temp temporary directory with insecure permissions, which allows local users to read sensitive ISO images.    2.1  Low  2017-01-03  2008-09-05  View
68677  CVE-2005-3013  Buffer overflow in liby2util in Yet another Setup Tool (YaST) for SuSE Linux 9.3 allows local users to execute arbitrary code via a long Loc entry.    4.6  Medium  2017-07-18  2017-07-10  View

Page 2759 of 17672, showing 5 records out of 88360 total, starting on record 13791, ending on 13795

Actions