NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 70248 | CVE-2005-4659 | IPCop (aka IPCop Firewall) before 1.4.10 has world-readable permissions for the backup.key file, which might allow local users to overwrite system configuration files and gain privileges by creating a malicious encrypted backup archive owned by "nobody", then executing ipcoprscfg to restore from this backup. | 2 | 2.1 | Low | 2017-01-03 | 2008-09-05 | View | |
| 70249 | CVE-2005-4660 | Race condition in IPCop (aka IPCop Firewall) before 1.4.10 might allow local users to overwrite system configuration files and gain privileges by replacing a backup archive during the time window when the archive is owned by "nobody" but not yet encrypted, then executing ipcoprscfg to restore from this backup. | 2 | 1.2 | Low | 2017-01-03 | 2008-09-05 | View | |
| 70250 | CVE-2005-4661 | The notifyendsubs cron job in Campsite before 2.3.3 sends an e-mail message containing a certain unencrypted MySQL password, which allows remote attackers to sniff the password. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 70251 | CVE-2005-4662 | Multiple SQL injection vulnerabilities in OcoMon 1.20, and possibly earlier versions, allow remote attackers to execute arbitrary SQL commands via unknown attack vectors in an unspecified input form, a different vulnerability than CVE-2005-4664. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 70252 | CVE-2005-4663 | Cross-site scripting (XSS) vulnerability in OcoMon 1.20, and possibly earlier versions, allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-10 | View |
Page 3074 of 17672, showing 5 records out of 88360 total, starting on record 15366, ending on 15370