NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
31297 | CVE-2014-3020 | install.sh in the Embedded WebSphere Application Server (eWAS) 7.0 before FP33 in IBM Tivoli Integrated Portal (TIP) 2.1 and 2.2 sets world-writable permissions for the installRoot directory tree, which allows local users to gain privileges via a Trojan horse program. | 2 | 6.9 | Medium | 2017-07-18 | 2017-07-17 | View | |
65858 | CVE-2005-0078 | The KDE screen saver in KDE before 3.0.5 does not properly check the return value from a certain function call, which allows attackers with physical access to cause a crash and access the desktop session. | 2 | 4.6 | Medium | 2017-07-18 | 2017-07-10 | View | |
66626 | CVE-2005-0876 | Off-by-one buffer overflow in Dnsmasq before 2.21 may allow attackers to execute arbitrary code via the DHCP lease file. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
67906 | CVE-2005-2204 | Cross-site scripting (XSS) vulnerability in Computer Associates (CA) eTrust SiteMinder 5.5, when the "CSSChecking" parameter is set to "NO," allows remote attackers to inject arbitrary web script or HTML via the (1) PASSWORD or (2) BUFFER parameters to smpwservicescgi.exe, (3) the TARGET parameter to login.fcc, and possibly other vectors. | 2 | 4.3 | Medium | 2017-07-18 | 2017-07-10 | View | |
68162 | CVE-2005-2471 | pstopnm in netpbm does not properly use the "-dSAFER" option when calling Ghostscript to convert a PostScript file into a (1) PBM, (2) PGM, or (3) PNM file, which allows external user-assisted attackers to execute arbitrary commands. | 2 | 7.5 | High | 2017-07-18 | 2017-07-10 | View |
Page 371 of 17672, showing 5 records out of 88360 total, starting on record 1851, ending on 1855