NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
68099  CVE-2005-2407  A design error in Opera 8.01 and earlier allows user-assisted attackers to execute arbitrary code by overlaying a malicious new window above a file download dialog box, then tricking the user into double-clicking on the "Run" button, aka "link hijacking".    2.6  Low  2017-01-03  2011-03-07  View
71438  CVE-2004-1038  A design error in the IEEE1394 specification allows attackers with physical access to a device to read and write to sensitive memory using a modified FireWire/IEEE 1394 client, thus bypassing intended restrictions that would normally require greater degrees of physical access to exploit. NOTE: this was reported in 2008 to affect Windows Vista, but some Linux-based operating systems have protection mechanisms against this attack.    7.2  High  2017-07-18  2017-07-10  View
87097  CVE-2017-9552  A design flaw in authentication in Synology Photo Station 6.0-2528 through 6.7.1-3419 allows local users to obtain credentials via cmdline. Synology Photo Station employs the synophoto_dsm_user program to authenticate username and password by synophoto_dsm_user --auth USERNAME PASSWORD, and local users are able to obtain credentials by sniffing /proc/*/cmdline.    2.1  Low  2017-07-18  2017-07-03  View
66164  CVE-2005-0406  A design flaw in image processing software that modifies JPEG images might not modify the original EXIF thumbnail, which could lead to an information leak of potentially sensitive visual information that had been removed from the main JPEG image.    2.1  Low  2017-01-03  2008-09-10  View
24845  CVE-2015-2867  A design flaw in the Trane ComfortLink II SCC firmware version 2.0.2 service allows remote attackers to take complete control of the system.    10  High  2017-01-19  2017-01-10  View

Page 393 of 17672, showing 5 records out of 88360 total, starting on record 1961, ending on 1965

Actions