Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 79 713

Количество 79 713

ubuntu логотип

CVE-2005-0096

больше 21 года назад

Memory leak in the NTLM fakeauth_auth helper for Squid 2.5.STABLE7 and earlier allows remote attackers to cause a denial of service (memory consumption).

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2005-0095

больше 21 года назад

The WCCP message parsing code in Squid 2.5.STABLE7 and earlier allows remote attackers to cause a denial of service (crash) via malformed WCCP messages with source addresses that are spoofed to reference Squid's home router and invalid WCCP_I_SEE_YOU cache numbers.

CVSS2: 5
EPSS: Средний
ubuntu логотип

CVE-2005-0094

больше 21 года назад

Buffer overflow in the gopherToHTML function in the Gopher reply parser for Squid 2.5.STABLE7 and earlier allows remote malicious Gopher servers to cause a denial of service (crash) via crafted responses.

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2005-0089

больше 21 года назад

The SimpleXMLRPCServer library module in Python 2.2, 2.3 before 2.3.5, and 2.4, when used by XML-RPC servers that use the register_instance method to register an object without a _dispatch method, allows remote attackers to read or modify globals of the associated module, and possibly execute arbitrary code, via dotted attributes.

CVSS2: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2005-0088

больше 21 года назад

The publisher handler for mod_python 2.7.8 and earlier allows remote attackers to obtain access to restricted objects via a crafted URL.

CVSS2: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2005-0087

больше 21 года назад

The alsa-lib package in Red Hat Linux 4 disables stack protection for the libasound.so library, which makes it easier for attackers to execute arbitrary code if there are other vulnerabilities in the library.

CVSS2: 4.6
EPSS: Низкий
ubuntu логотип

CVE-2005-0085

больше 21 года назад

Cross-site scripting (XSS) vulnerability in ht://dig (htdig) before 3.1.6-r7 allows remote attackers to execute arbitrary web script or HTML via the config parameter, which is not properly sanitized before it is displayed in an error message.

CVSS2: 6.8
EPSS: Низкий
ubuntu логотип

CVE-2005-0084

больше 21 года назад

Buffer overflow in the X11 dissector in Ethereal 0.8.10 through 0.10.8 allows remote attackers to execute arbitrary code via a crafted packet.

CVSS2: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2005-0081

больше 21 года назад

MySQL MaxDB 7.5.0.0, and other versions before 7.5.0.21, allows remote attackers to cause a denial of service (crash) via an HTTP request with invalid headers.

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2005-0080

больше 21 года назад

The 55_options_traceback.dpatch patch for mailman 2.1.5 in Ubuntu 4.10 displays a different error message depending on whether the e-mail address is subscribed to a private list, which allows remote attackers to determine the list membership for a given e-mail address.

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2005-0079

больше 21 года назад

Buffer overflow in xtrlock 2.0 allows local users to cause a denial of service (application crash) and hijack the desktop session.

CVSS2: 4.6
EPSS: Низкий
ubuntu логотип

CVE-2005-0077

больше 21 года назад

The DBI library (libdbi-perl) for Perl allows local users to overwrite arbitrary files via a symlink attack on a temporary PID file.

CVSS2: 2.1
EPSS: Низкий
ubuntu логотип

CVE-2005-0076

больше 21 года назад

Multiple buffer overflows in the XView library 3.2 may allow local users to execute arbitrary code via setuid applications that use the library.

CVSS2: 7.2
EPSS: Низкий
ubuntu логотип

CVE-2005-0075

больше 21 года назад

prefs.php in SquirrelMail before 1.4.4, with register_globals enabled, allows remote attackers to inject local code into the SquirrelMail code via custom preference handlers.

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2005-0074

больше 21 года назад

Buffer overflow in pcdsvgaview in xpcd 2.08 allows local users to execute arbitrary code.

CVSS2: 7.2
EPSS: Низкий
ubuntu логотип

CVE-2005-0073

больше 21 года назад

Buffer overflow in queue.c in a support script for sympa 3.3.3, when running setuid, allows local users to execute arbitrary code.

CVSS2: 4.6
EPSS: Низкий
ubuntu логотип

CVE-2005-0072

больше 21 года назад

zhcon before 0.2 does not drop privileges before reading a user configuration file, which allows local users to read arbitrary files.

CVSS2: 2.1
EPSS: Низкий
ubuntu логотип

CVE-2005-0071

больше 21 года назад

vdr before 1.2.6 does not securely create files, which allows attackers to overwrite arbitrary files.

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2005-0070

больше 21 года назад

Synaesthesia 2.1 and earlier, and possibly other versions, when installed setuid root, does not drop privileges before processing configuration and mixer files, which allows local users to read arbitrary files.

CVSS2: 7.2
EPSS: Низкий
ubuntu логотип

CVE-2005-0069

больше 21 года назад

The (1) tcltags or (2) vimspell.sh scripts in vim 6.3 allow local users to overwrite or create arbitrary files via a symlink attack on temporary files.

CVSS2: 4.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2005-0096

Memory leak in the NTLM fakeauth_auth helper for Squid 2.5.STABLE7 and earlier allows remote attackers to cause a denial of service (memory consumption).

CVSS2: 5
9%
Низкий
больше 21 года назад
ubuntu логотип
CVE-2005-0095

The WCCP message parsing code in Squid 2.5.STABLE7 and earlier allows remote attackers to cause a denial of service (crash) via malformed WCCP messages with source addresses that are spoofed to reference Squid's home router and invalid WCCP_I_SEE_YOU cache numbers.

CVSS2: 5
69%
Средний
больше 21 года назад
ubuntu логотип
CVE-2005-0094

Buffer overflow in the gopherToHTML function in the Gopher reply parser for Squid 2.5.STABLE7 and earlier allows remote malicious Gopher servers to cause a denial of service (crash) via crafted responses.

CVSS2: 5
9%
Низкий
больше 21 года назад
ubuntu логотип
CVE-2005-0089

The SimpleXMLRPCServer library module in Python 2.2, 2.3 before 2.3.5, and 2.4, when used by XML-RPC servers that use the register_instance method to register an object without a _dispatch method, allows remote attackers to read or modify globals of the associated module, and possibly execute arbitrary code, via dotted attributes.

CVSS2: 7.5
6%
Низкий
больше 21 года назад
ubuntu логотип
CVE-2005-0088

The publisher handler for mod_python 2.7.8 and earlier allows remote attackers to obtain access to restricted objects via a crafted URL.

CVSS2: 7.5
6%
Низкий
больше 21 года назад
ubuntu логотип
CVE-2005-0087

The alsa-lib package in Red Hat Linux 4 disables stack protection for the libasound.so library, which makes it easier for attackers to execute arbitrary code if there are other vulnerabilities in the library.

CVSS2: 4.6
0%
Низкий
больше 21 года назад
ubuntu логотип
CVE-2005-0085

Cross-site scripting (XSS) vulnerability in ht://dig (htdig) before 3.1.6-r7 allows remote attackers to execute arbitrary web script or HTML via the config parameter, which is not properly sanitized before it is displayed in an error message.

CVSS2: 6.8
2%
Низкий
больше 21 года назад
ubuntu логотип
CVE-2005-0084

Buffer overflow in the X11 dissector in Ethereal 0.8.10 through 0.10.8 allows remote attackers to execute arbitrary code via a crafted packet.

CVSS2: 7.5
6%
Низкий
больше 21 года назад
ubuntu логотип
CVE-2005-0081

MySQL MaxDB 7.5.0.0, and other versions before 7.5.0.21, allows remote attackers to cause a denial of service (crash) via an HTTP request with invalid headers.

CVSS2: 5
2%
Низкий
больше 21 года назад
ubuntu логотип
CVE-2005-0080

The 55_options_traceback.dpatch patch for mailman 2.1.5 in Ubuntu 4.10 displays a different error message depending on whether the e-mail address is subscribed to a private list, which allows remote attackers to determine the list membership for a given e-mail address.

CVSS2: 5
1%
Низкий
больше 21 года назад
ubuntu логотип
CVE-2005-0079

Buffer overflow in xtrlock 2.0 allows local users to cause a denial of service (application crash) and hijack the desktop session.

CVSS2: 4.6
0%
Низкий
больше 21 года назад
ubuntu логотип
CVE-2005-0077

The DBI library (libdbi-perl) for Perl allows local users to overwrite arbitrary files via a symlink attack on a temporary PID file.

CVSS2: 2.1
0%
Низкий
больше 21 года назад
ubuntu логотип
CVE-2005-0076

Multiple buffer overflows in the XView library 3.2 may allow local users to execute arbitrary code via setuid applications that use the library.

CVSS2: 7.2
0%
Низкий
больше 21 года назад
ubuntu логотип
CVE-2005-0075

prefs.php in SquirrelMail before 1.4.4, with register_globals enabled, allows remote attackers to inject local code into the SquirrelMail code via custom preference handlers.

CVSS2: 5
2%
Низкий
больше 21 года назад
ubuntu логотип
CVE-2005-0074

Buffer overflow in pcdsvgaview in xpcd 2.08 allows local users to execute arbitrary code.

CVSS2: 7.2
0%
Низкий
больше 21 года назад
ubuntu логотип
CVE-2005-0073

Buffer overflow in queue.c in a support script for sympa 3.3.3, when running setuid, allows local users to execute arbitrary code.

CVSS2: 4.6
0%
Низкий
больше 21 года назад
ubuntu логотип
CVE-2005-0072

zhcon before 0.2 does not drop privileges before reading a user configuration file, which allows local users to read arbitrary files.

CVSS2: 2.1
0%
Низкий
больше 21 года назад
ubuntu логотип
CVE-2005-0071

vdr before 1.2.6 does not securely create files, which allows attackers to overwrite arbitrary files.

CVSS2: 5
1%
Низкий
больше 21 года назад
ubuntu логотип
CVE-2005-0070

Synaesthesia 2.1 and earlier, and possibly other versions, when installed setuid root, does not drop privileges before processing configuration and mixer files, which allows local users to read arbitrary files.

CVSS2: 7.2
0%
Низкий
больше 21 года назад
ubuntu логотип
CVE-2005-0069

The (1) tcltags or (2) vimspell.sh scripts in vim 6.3 allow local users to overwrite or create arbitrary files via a symlink attack on temporary files.

CVSS2: 4.6
0%
Низкий
больше 21 года назад

Уязвимостей на страницу