NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
69268 | CVE-2005-3630 | Fedora Directory Server before 10 allows remote attackers to obtain sensitive information, such as the password from adm.conf via an IFRAME element, probably involving an Apache httpd.conf configuration that orders "allow" directives before "deny" directives. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
69780 | CVE-2005-4172 | eFiction 1.0, 1.1, and 2.0 allows remote attackers to obtain sensitive information via a direct request to storyblock.php without arguments, which leaks the full pathname in the resulting PHP error message. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
70292 | CVE-2005-4703 | Apache Tomcat 4.0.3, when running on Windows, allows remote attackers to obtain sensitive information via a request for a file that contains an MS-DOS device name such as lpt9, which leaks the pathname in an error message, as demonstrated by lpt9.xtp using Nikto. | 2 | 5 | Medium | 2017-01-03 | 2008-09-05 | View | |
71828 | CVE-2004-1449 | Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7 allows remote attackers to determine the location of files on a user"s hard drive by obscuring a file upload control and tricking the user into dragging text into that control. | 2 | 2.6 | Low | 2016-12-20 | 2008-09-05 | View | |
73108 | CVE-2004-2731 | Multiple integer overflows in Sbus PROM driver (drivers/sbus/char/openprom.c) for the Linux kernel 2.4.x up to 2.4.27, 2.6.x up to 2.6.7, and possibly later versions, allow local users to execute arbitrary code by specifying (1) a small buffer size to the copyin_string function or (2) a negative buffer size to the copyin function. | 2 | 4.4 | Medium | 2016-12-20 | 2008-09-05 | View |
Page 992 of 17672, showing 5 records out of 88360 total, starting on record 4956, ending on 4960