255921
|
- |
|
mozilla
|
firefox
|
The install function in Firefox 1.0.3 allows remote web sites on the browser's whitelist, such as update.mozilla.org or addon.mozilla.org, to execute arbitrary Javascript with chrome privileges, lead…
|
NVD-CWE-Other
|
CVE-2005-1477
|
2017-10-11 10:30 |
2005-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255922
|
- |
|
squid
|
squid
|
Squid 2.5 STABLE9 and earlier, when the DNS client port is unfiltered and the environment does not prevent IP spoofing, allows remote attackers to spoof DNS lookups.
|
NVD-CWE-Other
|
CVE-2005-1519
|
2017-10-11 10:30 |
2005-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255923
|
- |
|
mozilla
|
firefox mozilla
|
Firefox before 1.0.4 and Mozilla Suite before 1.7.8 does not properly implement certain security checks for script injection, which allows remote attackers to execute script via "Wrapped" javascript:…
|
NVD-CWE-Other
|
CVE-2005-1531
|
2017-10-11 10:30 |
2005-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255924
|
- |
|
mozilla
|
firefox mozilla
|
Firefox before 1.0.4 and Mozilla Suite before 1.7.8 do not properly limit privileges of Javascript eval and Script objects in the calling context, which allows remote attackers to conduct unauthorize…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2005-1532
|
2017-10-11 10:30 |
2005-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255925
|
- |
|
gnu
|
gdb
|
gdb before 6.3 searches the current working directory to load the .gdbinit configuration file, which allows local users to execute arbitrary commands as the user running gdb.
|
NVD-CWE-Other
|
CVE-2005-1705
|
2017-10-11 10:30 |
2005-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255926
|
- |
|
net-snmp
|
net-snmp
|
fixproc in Net-snmp 5.x before 5.2.1-r1 creates temporary files insecurely, which allows local users to modify the contents of those files to execute arbitrary commands, or overwrite arbitrary files …
|
NVD-CWE-Other
|
CVE-2005-1740
|
2017-10-11 10:30 |
2005-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255927
|
- |
|
redhat
|
sysreport enterprise_linux enterprise_linux_desktop linux_advanced_workstation
|
sysreport 1.3.15 and earlier includes contents of the up2date file in a report, which leaks the password for a proxy server in plaintext and allows local users to gain privileges.
|
NVD-CWE-Other
|
CVE-2005-1760
|
2017-10-11 10:30 |
2005-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255928
|
- |
|
realnetworks
|
realplayer
|
Heap-based buffer overflow in rtffplin.cpp in RealPlayer 10.5 6.0.12.1056 on Windows, and 10, 10.0.1.436, and other versions before 10.0.5 on Linux, allows remote attackers to execute arbitrary code …
|
NVD-CWE-Other
|
CVE-2005-1766
|
2017-10-11 10:30 |
2005-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255929
|
- |
|
linux
|
linux_kernel
|
Race condition in the ia32 compatibility code for the execve system call in Linux kernel 2.4 before 2.4.31 and 2.6 before 2.6.6 allows local users to cause a denial of service (kernel panic) and poss…
|
NVD-CWE-Other
|
CVE-2005-1768
|
2017-10-11 10:30 |
2005-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
255930
|
- |
|
squirrelmail
|
squirrelmail
|
Multiple cross-site scripting (XSS) vulnerabilities in SquirrelMail 1.4.0 through 1.4.4 allow remote attackers to inject arbitrary web script or HTML via unknown attack vectors in (1) the URL or (2) …
|
NVD-CWE-Other
|
CVE-2005-1769
|
2017-10-11 10:30 |
2005-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|