Skip to main content

Severity archive

Low severity CVEs

Low

17,985 low severity CVEs — 43,503 Critical, 125,271 High, 163,599 Medium, 17,985 Low, 2,319 Unrated across the current result set.

CVE-2005-1167

Published May 2, 2005

Musicmatch 10.00.2047 and earlier store log files in the Program Files directory instead of the user profile, which may allow local users to obtain sensitive information.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1176

Published May 2, 2005

Race condition in JFS2 on AIX 5.2 and 5.3, when deleting a file while I/O is still occurring for that file, may write data to a different file, which could leak sensitive informat…

CVSS 1.2 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1286

Published May 2, 2005

Unquoted Windows search path vulnerability in BitDefender 8 allows local users to prevent BitDefender from starting by creating a malicious C:\program.exe, possibly due to the lac…

CVSS 1.2 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1347

Published May 2, 2005

** UNVERIFIABLE ** NOTE: this issue describes a problem that can not be independently verified as of 20050421. Adobe Acrobat reader (AcroRd32.exe) 6.0 and earlier allows remote…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1368

Published May 2, 2005

The key_user_lookup function in security/keys/key.c in Linux kernel 2.6.10 to 2.6.11.8 may allow attackers to cause a denial of service (oops) via SMP.

CVSS 1.2 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1369

Published May 2, 2005

The (1) it87 and (2) via686a drivers in I2C for Linux 2.6.x before 2.6.11.8, and 2.6.12 before 2.6.12-rc2, create the sysfs "alarms" file with write permissions, which allows loca…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-0421

Published Apr 27, 2005

DelphiTurk FTP 1.0 stores usernames and passwords in the profile.dat file, which allows local users to gain privileges.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-0422

Published Apr 27, 2005

DelphiTurk CodeBank (aka KodBank) 3.1 and earlier stores usernames and passwords in the Codebank registry key, which allows local users to gain privileges.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1270

Published Apr 26, 2005

The (1) check_update.sh and (2) rkhunter script in Rootkit Hunter before 1.2.3-r1 create temporary files with predictable file names, which allows local users to overwrite arbitra…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1126

Published Apr 15, 2005

The SIOCGIFCONF ioctl (ifconf function) in FreeBSD 4.x through 4.11 and 5.x through 5.4 does not properly clear a buffer before using it, which allows local users to obtain portio…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-0124

Published Apr 14, 2005

The coda_pioctl function in the coda functionality (pioctl.c) for Linux kernel 2.6.9 and 2.4.x before 2.4.29 may allow local users to cause a denial of service (crash) or execute…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-1301

Published Apr 13, 2005

nProtect:Netizen 2005.3.17.1 does not properly verify that the update module is downloaded from an authorized site, which allows remote malicious web sites to write arbitrary file…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-0585

Published Mar 25, 2005

Firefox before 1.0.1 and Mozilla before 1.7.6 truncates long sub-domains or paths for display, which may allow remote malicious web sites to spoof legitimate sites and facilitate…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-0143

Published Mar 23, 2005

Firefox before 1.0 and Mozilla before 1.7.5 display the SSL lock icon when an insecure page loads a binary file from a trusted site, which could facilitate phishing attacks.

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-0715

Published Mar 21, 2005

AFP Server in Mac OS X before 10.3.8 uses insecure permissions for "Drop Boxes," which allows local users to read the contents of a Drop Box.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-0510

Published Mar 14, 2005

The daemon for fallback-reboot before 0.995 allows attackers to cause a denial of service (daemon exit), possibly related to verbose debug messages when the daemon is not on a tty.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-0719

Published Mar 9, 2005

Unknown vulnerability in the systems message queue in HP Tru64 Unix 4.0F PK8 through 5.1B-2/PK4 allows local users to cause a denial of service (process crash) for processes such…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-0099

Published Mar 8, 2005

The SDL port of abuse (abuse-SDL) before 2.00 does not properly drop privileges before creating certain files, which allows local users to create or overwrite arbitrary files.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-0626

Published Mar 8, 2005

Race condition in Squid 2.5.STABLE7 to 2.5.STABLE9, when using the Netscape Set-Cookie recommendations for handling cookies in caches, may cause Set-Cookie headers to be sent to o…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort
Showing 17,076-17,100 of 17,985 CVEsPage 684 of 720