NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
67855 | CVE-2005-2151 | spf.c in Courier Mail Server does not properly handle DNS failures when looking up Sender Policy Framework (SPF) records, which could allow attackers to cause memory corruption. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
2575 | CVE-2008-2677 | Cross-site scripting (XSS) vulnerability in edit1.php in Telephone Directory 2008 allows remote attackers to inject arbitrary web script or HTML via the action parameter. | 2 | 4.3 | Medium | 2017-01-03 | 2009-04-14 | View | |
68367 | CVE-2005-2678 | Microsoft IIS 5.1 and 6 allows remote attackers to spoof the SERVER_NAME variable to bypass security checks and conduct various attacks via a GET request with an http://localhost URI, which makes it appear as if the request is coming from localhost. | 2 | 5 | Medium | 2017-01-03 | 2016-10-17 | View | |
68623 | CVE-2005-2959 | Incomplete blacklist vulnerability in sudo 1.6.8 and earlier allows local users to gain privileges via the (1) SHELLOPTS and (2) PS4 environment variables before executing a bash script on behalf of another user, which are not cleared even though other variables are. | 2 | 4.6 | Medium | 2017-01-03 | 2011-07-28 | View | |
68879 | CVE-2005-3217 | Multiple interpretation error in unspecified versions of Symantec Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper. | 2 | 5.1 | Medium | 2017-01-03 | 2016-10-17 | View |
Page 543 of 17672, showing 5 records out of 88360 total, starting on record 2711, ending on 2715