Page(s) : 1 ... 376 377 378 379 380 381 382 383 384 385 [386] 387 388 389 390 391 392 393 394 395 396 ... | Result(s) : 9857 |
Alerts
DATE | NAME | CATEGORIES | DETAIL | |
---|---|---|---|---|
2.1 | 2007-05-22 | CVE-2006-7204 | cve | The imap_body function in PHP before 4.4.4 does not implement safemode or open_basedir checks, which allows local users to read arbitrary files or list arbitrary directory conte... |
2.6 | 2007-05-21 | DSA-1296 | Debian | New php4 packages fix privilege escalation |
3.5 | 2007-05-17 | CVE-2007-2746 | cve | The viewList function in lib/WebGUI/Asset/Wobject/DataForm.pm in Plain Black WebGUI before 7.3.14 does not properly use data structures containing privilege information, which a... |
2.1 | 2007-05-17 | RHSA-2007:0345 | RedHat | vixie-cron security update |
2.6 | 2007-05-17 | RHSA-2007:0353 | RedHat | evolution security update |
2.6 | 2007-05-16 | CVE-2007-2727 | cve | The mcrypt_create_iv function in ext/mcrypt/mcrypt.c in PHP before 4.4.7, 5.2.1, and possibly 5.0.x and other PHP 5 versions, calls php_rand_r with an uninitialized seed variabl... |
3.5 | 2007-05-15 | CVE-2007-2683 | cve | Buffer overflow in Mutt 1.4.2 might allow local users to execute arbitrary code via "&" characters in the GECOS field, which triggers the overflow during alias expansion. |
3.5 | 2007-05-15 | CVE-2007-2693 | cve | MySQL before 5.1.18 allows remote authenticated users without SELECT privileges to obtain sensitive information from partitioned tables via an ALTER TABLE statement. |
3.5 | 2007-05-15 | CVE-2007-2702 | cve | Cross-site scripting (XSS) vulnerability in the GroupSpace application in BEA WebLogic Portal 9.2 GA allows remote authenticated users to inject arbitrary web script or HTML via... |
3.6 | 2007-05-15 | CVE-2007-2703 | cve | BEA WebLogic Portal 9.2 GA can corrupt a visitor entitlements role if an administrator provides a long role description, which might allow remote authenticated users to access p... |
2.6 | 2007-05-14 | CVE-2007-1903 | cve | Cross-site scripting (XSS) vulnerability in search.php in SonicBB 1.0 allows remote attackers to inject arbitrary web script or HTML via the part parameter. |
2.1 | 2007-05-11 | CVE-2007-2617 | cve | srsexec in Sun Remote Services (SRS) Net Connect Software Proxy Core package in Sun Solaris 10 does not enforce file permissions when opening files, which allows local users to ... |
1.9 | 2007-05-09 | CVE-2007-2580 | cve | Unspecified vulnerability in Apple Safari allows local users to obtain sensitive information (saved keychain passwords) via the document.loginform.password.value JavaScript para... |
2.6 | 2007-05-09 | CVE-2007-1358 | cve | Cross-site scripting (XSS) vulnerability in certain applications using Apache Tomcat 4.0.0 through 4.0.6 and 4.1.0 through 4.1.34 allows remote attackers to inject arbitrary web... |
2.6 | 2007-05-09 | CVE-2007-1858 | cve | The default SSL cipher configuration in Apache Tomcat 4.1.28 through 4.1.31, 5.0.0 through 5.0.30, and 5.5.0 through 5.5.17 uses certain insecure ciphers, including the anonymou... |
2.6 | 2007-05-08 | CVE-2007-2509 | cve | CRLF injection vulnerability in the ftp_putcmd function in PHP before 4.4.7, and 5.x before 5.2.2 allows remote attackers to inject arbitrary FTP commands via CRLF sequences in ... |
2.1 | 2007-05-02 | CVE-2007-1322 | cve | QEMU 0.8.2 allows local users to halt a virtual machine by executing the icebp instruction. |
2.1 | 2007-05-02 | CVE-2007-1366 | cve | QEMU 0.8.2 allows local users to crash a virtual machine via the divisor operand to the aam instruction, as demonstrated by "aam 0x0," which triggers a divide-by-zero error. |
2.6 | 2007-05-01 | RHSA-2007:0220 | RedHat | gcc security and bug fix update |
2.1 | 2007-05-01 | RHSA-2007:0244 | RedHat | busybox security update |
Page(s) : 1 ... 376 377 378 379 380 381 382 383 384 385 [386] 387 388 389 390 391 392 393 394 395 396 ... | Result(s) : 9857 |