Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 376 377 378 379 380 381 382 383 384 385 [386] 387 388 389 390 391 392 393 394 395 396 ... Result(s) : 9857

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
2.1 2007-05-22 CVE-2006-7204 cve The imap_body function in PHP before 4.4.4 does not implement safemode or open_basedir checks, which allows local users to read arbitrary files or list arbitrary directory conte...
2.6 2007-05-21 DSA-1296 Debian New php4 packages fix privilege escalation
3.5 2007-05-17 CVE-2007-2746 cve The viewList function in lib/WebGUI/Asset/Wobject/DataForm.pm in Plain Black WebGUI before 7.3.14 does not properly use data structures containing privilege information, which a...
2.1 2007-05-17 RHSA-2007:0345 RedHat vixie-cron security update
2.6 2007-05-17 RHSA-2007:0353 RedHat evolution security update
2.6 2007-05-16 CVE-2007-2727 cve The mcrypt_create_iv function in ext/mcrypt/mcrypt.c in PHP before 4.4.7, 5.2.1, and possibly 5.0.x and other PHP 5 versions, calls php_rand_r with an uninitialized seed variabl...
3.5 2007-05-15 CVE-2007-2683 cve Buffer overflow in Mutt 1.4.2 might allow local users to execute arbitrary code via "&" characters in the GECOS field, which triggers the overflow during alias expansion.
3.5 2007-05-15 CVE-2007-2693 cve MySQL before 5.1.18 allows remote authenticated users without SELECT privileges to obtain sensitive information from partitioned tables via an ALTER TABLE statement.
3.5 2007-05-15 CVE-2007-2702 cve Cross-site scripting (XSS) vulnerability in the GroupSpace application in BEA WebLogic Portal 9.2 GA allows remote authenticated users to inject arbitrary web script or HTML via...
3.6 2007-05-15 CVE-2007-2703 cve BEA WebLogic Portal 9.2 GA can corrupt a visitor entitlements role if an administrator provides a long role description, which might allow remote authenticated users to access p...
2.6 2007-05-14 CVE-2007-1903 cve Cross-site scripting (XSS) vulnerability in search.php in SonicBB 1.0 allows remote attackers to inject arbitrary web script or HTML via the part parameter.
2.1 2007-05-11 CVE-2007-2617 cve srsexec in Sun Remote Services (SRS) Net Connect Software Proxy Core package in Sun Solaris 10 does not enforce file permissions when opening files, which allows local users to ...
1.9 2007-05-09 CVE-2007-2580 cve Unspecified vulnerability in Apple Safari allows local users to obtain sensitive information (saved keychain passwords) via the document.loginform.password.value JavaScript para...
2.6 2007-05-09 CVE-2007-1358 cve Cross-site scripting (XSS) vulnerability in certain applications using Apache Tomcat 4.0.0 through 4.0.6 and 4.1.0 through 4.1.34 allows remote attackers to inject arbitrary web...
2.6 2007-05-09 CVE-2007-1858 cve The default SSL cipher configuration in Apache Tomcat 4.1.28 through 4.1.31, 5.0.0 through 5.0.30, and 5.5.0 through 5.5.17 uses certain insecure ciphers, including the anonymou...
2.6 2007-05-08 CVE-2007-2509 cve CRLF injection vulnerability in the ftp_putcmd function in PHP before 4.4.7, and 5.x before 5.2.2 allows remote attackers to inject arbitrary FTP commands via CRLF sequences in ...
2.1 2007-05-02 CVE-2007-1322 cve QEMU 0.8.2 allows local users to halt a virtual machine by executing the icebp instruction.
2.1 2007-05-02 CVE-2007-1366 cve QEMU 0.8.2 allows local users to crash a virtual machine via the divisor operand to the aam instruction, as demonstrated by "aam 0x0," which triggers a divide-by-zero error.
2.6 2007-05-01 RHSA-2007:0220 RedHat gcc security and bug fix update
2.1 2007-05-01 RHSA-2007:0244 RedHat busybox security update
Page(s) : 1 ... 376 377 378 379 380 381 382 383 384 385 [386] 387 388 389 390 391 392 393 394 395 396 ... Result(s) : 9857