Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2005-10-23 CVE-2005-3298 Remote Buffer Overflow vulnerability in Suse Linux 9.0
Multiple buffer overflows in OpenWBEM on SuSE Linux 9 allow remote attackers to execute arbitrary code via unknown vectors.
network
low complexity
suse
7.5
2005-10-23 CVE-2005-3297 Remote Buffer Overflow vulnerability in OpenWBEM
Multiple integer overflows in OpenWBEM on SuSE Linux 9 allow remote attackers to execute arbitrary code via unknown vectors.
network
low complexity
suse
7.5
2005-10-23 CVE-2005-3296 The FTP server in HP-UX 10.20, B.11.00, and B.11.11, allows remote attackers to list arbitrary directories as root by running the LIST command before logging in.
network
low complexity
hp
critical
10.0
2005-10-23 CVE-2005-3295 Local Denial Of Service vulnerability in HP Hp-Ux 11.23
Unspecified vulnerability in HP-UX B.11.23 on Itanium platforms allows local users to cause a denial of service due to a "specific stack size."
local
low complexity
hp
2.1
2005-10-23 CVE-2005-3294 Resource Management Errors vulnerability in Typsoft FTP Server
Typsoft FTP Server 1.11, with "Sub Directory Include" enabled, allows remote attackers to cause a denial of service (crash) by sending multiple RETR commands.
network
low complexity
typsoft CWE-399
5.0
2005-10-23 CVE-2005-3293 Input Validation vulnerability in Xerver 4.17H
Xerver 4.17 allows remote attackers to (1) obtain source code of scripts via a request with a trailing "." (dot) or (2) list directory contents via a trailing null character.
network
low complexity
xerver
5.0
2005-10-23 CVE-2005-3292 HTML Injection vulnerability in Xeobook 0.93
Multiple cross-site scripting (XSS) vulnerabilities in Xeobook 0.93 allow remote attackers to inject arbitrary web script or HTML via Javascript events in tages such as <b>.
network
xeobook
4.3
2005-10-23 CVE-2005-3291 Unspecified vulnerability in Stani Stanis Python Editor 0.7.5
Stani's Python Editor (SPE) 0.7.5 is installed with world-writable permissions, which allows local users to gain privileges by modifying executable files.
local
low complexity
stani
4.6
2005-10-23 CVE-2005-3290 SQL Injection vulnerability in Accelerated Mortgage Manager Password Field
SQL injection vulnerability in Accelerated Mortgage Manager allows remote attackers to execute arbitrary SQL commands via the password field.
network
low complexity
accelerated-enterprise-solutions
7.5
2005-10-23 CVE-2005-3289 Unspecified vulnerability in IBM AIX 5.2/5.3
LSCFG in IBM AIX 5.2 and 5.3 does not create temporary files securely, which allows local users to corrupt /etc/passwd and possibly other system files via the trace file.
local
low complexity
ibm
2.1