Page(s) : 1 ... 350 351 352 353 354 355 356 357 358 359 [360] 361 362 363 364 365 366 367 368 369 370 ... | Result(s) : 8837 |
Alerts
DATE | NAME | CATEGORIES | DETAIL | |
---|---|---|---|---|
2.1 | 2006-07-25 | CVE-2006-3825 | cve | The IPv4 implementation in Sun Solaris 10 before 20060721 allows local users to select routes that differ from the routing table, possibly facilitating firewall bypass or unauth... |
2.1 | 2006-07-25 | CVE-2006-3815 | cve | heartbeat.c in heartbeat before 2.0.6 sets insecure permissions in a shmget call for shared memory, which allows local users to cause an unspecified denial of service via unknow... |
2.6 | 2006-07-25 | CVE-2006-3619 | cve | Directory traversal vulnerability in FastJar 0.93, as used in Gnu GCC 4.1.1 and earlier, and 3.4.6 and earlier, allows user-assisted attackers to overwrite arbitrary files via a... |
2.6 | 2006-07-24 | CVE-2006-3795 | cve | Multiple cross-site scripting (XSS) vulnerabilities in DeluxeBB before 1.08 allow remote attackers to inject arbitrary web script or HTML via the (1) membercookie cookie in head... |
2.1 | 2006-07-24 | CVE-2006-3787 | cve | kpf4ss.exe in Sunbelt Kerio Personal Firewall 4.3.x before 4.3.268 does not properly hook the CreateRemoteThread API function, which allows local users to cause a denial of serv... |
3.6 | 2006-07-24 | CVE-2006-3786 | cve | Symantec pcAnywhere 12.5 uses weak integrity protection for .cif (aka caller or CallerID) files, which allows local users to generate a custom .cif file and modify the superuser... |
2.1 | 2006-07-24 | CVE-2006-3785 | cve | Symantec pcAnywhere 12.5 obfuscates the passwords in a GUI textbox with asterisks but does not encrypt them in the associated .cif (aka caller or CallerID) file, which allows lo... |
2.6 | 2006-07-24 | CVE-2006-3769 | cve | Multiple cross-site scripting (XSS) vulnerabilities in Top XL 1.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) pass and (2) pass2 parame... |
2.6 | 2006-07-21 | CVE-2006-3731 | cve | Mozilla Firefox 1.5.0.4 and earlier allows remote user-assisted attackers to cause a denial of service (crash) via a form with a multipart/form-data encoding and a user-uploaded... |
2.6 | 2006-07-21 | CVE-2006-3729 | cve | DataSourceControl in Internet Explorer 6 on Windows XP SP2 with Office installed allows remote attackers to cause a denial of service (crash) via a large negative integer argume... |
2.1 | 2006-07-21 | CVE-2006-3725 | cve | Norton Personal Firewall 2006 9.1.0.33 allows local users to cause a denial of service (crash) via certain RegSaveKey, RegRestoreKey and RegDeleteKey operations on the (1) HKLM\... |
3.6 | 2006-07-21 | CVE-2006-3707 | cve | Unspecified vulnerability in OC4J for Oracle Application Server 9.0.2.3 and 9.0.3.1 has unknown impact and attack vectors, aka Oracle Vuln# AS02. |
2.1 | 2006-07-21 | CVE-2006-3696 | cve | filtnt.sys in Outpost Firewall Pro before 3.51.759.6511 (462) allows local users to cause a denial of service (crash) via long arguments to mshta.exe. |
2.6 | 2006-07-21 | CVE-2006-3681 | cve | Multiple cross-site scripting (XSS) vulnerabilities in awstats.pl in AWStats 6.5 build 1.857 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1... |
2.6 | 2006-07-21 | CVE-2006-3680 | cve | Cross-site scripting (XSS) vulnerability in photocycle in Photocycle 1.0 allows remote attackers to inject arbitrary web script or HTML via the phpage parameter. |
3.6 | 2006-07-21 | CVE-2006-3589 | cve | vmware-config.pl in VMware for Linux, ESX Server 2.x, and Infrastructure 3 does not check the return code from a Perl chmod function call, which might cause an SSL key file to b... |
2.6 | 2006-07-18 | CVE-2006-3672 | cve | KDE Konqueror 3.5.1 and earlier allows remote attackers to cause a denial of service (application crash) by calling the replaceChild method on a DOM object, which triggers a nul... |
2.1 | 2006-07-18 | CVE-2006-3669 | cve | Mercury Messenger, possibly 1.7.1.1 and other versions, when running on a multi-user Mac OS X platform, stores chat logs with world-readable permissions within the /Users direct... |
2.6 | 2006-07-18 | CVE-2006-3661 | cve | Cross-site scripting (XSS) vulnerability in Index.PHP in CuteNews 1.4.5 allows remote attackers to inject arbitrary web script or HTML via unknown vectors. NOTE: the provenance... |
2.6 | 2006-07-18 | CVE-2006-3656 | cve | Unspecified vulnerability in Microsoft PowerPoint 2003 allows user-assisted attackers to cause memory corruption via a crafted PowerPoint file, which triggers the corruption whe... |
Page(s) : 1 ... 350 351 352 353 354 355 356 357 358 359 [360] 361 362 363 364 365 366 367 368 369 370 ... | Result(s) : 8837 |