NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
67855  CVE-2005-2151  spf.c in Courier Mail Server does not properly handle DNS failures when looking up Sender Policy Framework (SPF) records, which could allow attackers to cause memory corruption.    Medium  2017-01-03  2008-09-05  View
2575  CVE-2008-2677  Cross-site scripting (XSS) vulnerability in edit1.php in Telephone Directory 2008 allows remote attackers to inject arbitrary web script or HTML via the action parameter.    4.3  Medium  2017-01-03  2009-04-14  View
68367  CVE-2005-2678  Microsoft IIS 5.1 and 6 allows remote attackers to spoof the SERVER_NAME variable to bypass security checks and conduct various attacks via a GET request with an http://localhost URI, which makes it appear as if the request is coming from localhost.    Medium  2017-01-03  2016-10-17  View
68623  CVE-2005-2959  Incomplete blacklist vulnerability in sudo 1.6.8 and earlier allows local users to gain privileges via the (1) SHELLOPTS and (2) PS4 environment variables before executing a bash script on behalf of another user, which are not cleared even though other variables are.    4.6  Medium  2017-01-03  2011-07-28  View
68879  CVE-2005-3217  Multiple interpretation error in unspecified versions of Symantec Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.    5.1  Medium  2017-01-03  2016-10-17  View

Page 543 of 17672, showing 5 records out of 88360 total, starting on record 2711, ending on 2715

Actions