Skip to main content

Severity archive

Low severity CVEs

Low

18,047 low severity CVEs — 43,853 Critical, 126,429 High, 163,820 Medium, 18,047 Low, 1,892 Unrated across the current result set.

CVE-2005-2174

Published Jul 8, 2005

Bugzilla 2.17.x, 2.18 before 2.18.2, 2.19.x, and 2.20 before 2.20rc1 inserts a bug into the database before it is marked private, which introduces a race condition and allows atta…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1841

Published Jul 7, 2005

The control for Adobe Reader 5.0.9 and 5.0.10 on Linux, Solaris, HP-UX, and AIX creates temporary files with the permissions as specified in a user's umask, which could allow loca…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1917

Published Jul 5, 2005

kpopper 1.0 and earlier allows local users to create and overwrite arbitrary files via a symlink attack on the .popper-new temporary file.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1923

Published Jul 5, 2005

The ENSURE_BITS macro in mszipd.c for Clam AntiVirus (ClamAV) 0.83, and other versions vefore 0.86, allows remote attackers to cause a denial of service (CPU consumption by infini…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1932

Published Jul 5, 2005

Lpanel 1.59 and earlier, and other versions before 1.597, allows remote authenticated users to modify certain critical variables and (1) modify DNS settings for arbitrary domains…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-2134

Published Jul 5, 2005

The (1) clcs and (2) emuxki drivers in NetBSD 1.6 through 2.0.2 allow local users to cause a denial of service (kernel crash) by using the set-parameters ioctl on an audio device…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-2142

Published Jul 5, 2005

Directory traversal vulnerability in Golden FTP Server 2.60 allows remote authenticated attackers to list arbitrary directories via a "\.." (backslash dot dot) in an LS (LIST) co…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-2144

Published Jul 5, 2005

Prevx Pro 2005 1.0 allows local users to bypass file protection and modify files by using MapViewOfFile to perform memory mapping on the file.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-0201

Published Jun 29, 2005

D-BUS (dbus) before 0.22 does not properly restrict access to a socket, if the socket address is known, which allows local users to listen or send arbitrary messages on another us…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-2056

Published Jun 29, 2005

The Quantum archive decompressor in Clam AntiVirus (ClamAV) before 0.86.1 allows remote attackers to cause a denial of service (application crash) via a crafted Quantum archive.

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-2073

Published Jun 29, 2005

Unknown vulnerability in IBM DB2 8.1.4 through 8.1.9 and 8.2.0 through 8.2.2 allows local users with SELECT privileges to conduct unauthorized activities and insert, update or del…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-2076

Published Jun 29, 2005

HP Version Control Repository Manager (VCRM) before 2.1.1.730 does not properly handle the "@" character in a proxy password, which could allow attackers with physical access to o…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-2078

Published Jun 29, 2005

BisonFTP Server V4R1 allows remote authenticated users to cause a denial of service via an invalid command with a long argument.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1759

Published Jun 28, 2005

Race condition in shtool 2.0.1 and earlier allows local users to modify or create arbitrary files via a symlink attack on temporary files after they have been created, a different…

CVSS 1.2 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1993

Published Jun 20, 2005

Race condition in sudo 1.3.1 up to 1.6.8p8, when the ALL pseudo-command is used after a user entry in the sudoers file, allows local users to gain privileges via a symlink attack.

CVSS 3.7 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1265

Published Jun 16, 2005

The mmap function in the Linux Kernel 2.6.10 can be used to create memory maps with a start address beyond the end address, which allows local users to cause a denial of service (…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1720

Published Jun 16, 2005

AFP Server for Mac OS X 10.4.1, when using an ACL enabled volume, does not properly remove an ACL when a file is copied to a directory that does not use ACLs, which will override…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-2032

Published Jun 16, 2005

Unknown vulnerability in lpadmin on Sun Solaris 7, 8, and 9 allows local users to overwrite arbitrary files.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1937

Published Jun 14, 2005

A regression error in Firefox 1.0.3 and Mozilla 1.7.7 allows remote attackers to inject arbitrary Javascript from one page into the frameset of another site, aka the frame injecti…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1878

Published Jun 9, 2005

GIPTables Firewall 1.1 and earlier allows local users to overwrite arbitrary files via a symlink attack on the temp.ip.addresses temporary file.

CVSS 1.2 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1902

Published Jun 9, 2005

Directory traversal vulnerability in the IMAP service for SPA-PRO Mail @Solomon 4.00 allows remote authenticated users to read other users' mail and perform operations on arbitrar…

CVSS 3.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1944

Published Jun 9, 2005

xmysqladmin 1.0 and earlier allows local users to delete arbitrary files via a symlink attack on a database backup file in /tmp.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-0756

Published Jun 8, 2005

ptrace in Linux kernel 2.6.8.1 does not properly verify addresses on the amd64 platform, which allows local users to cause a denial of service (kernel crash).

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1725

Published Jun 8, 2005

launchd 106 in Apple Mac OS X 10.4.x up to 10.4.1 allows local users to overwrite arbitrary files via a symlink attack on the socket file in an insecure temporary directory.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1727

Published Jun 8, 2005

Apple Mac OS X 10.4.x up to 10.4.1 sets insecure world- and group-writable permissions for the (1) system cache folder and (2) Dashboard system widgets, which allows local users t…

CVSS 3.7 · Low
Vendor/product tagsBeta · best-effort
Showing 17,001-17,025 of 18,047 CVEsPage 681 of 722