Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2005-09-07 CVE-2005-2812 Scripts Command Execution vulnerability in Man2Web 0.87/0.88
man2web allows remote attackers to execute arbitrary commands via -P arguments.
network
low complexity
man2web
7.5
2005-09-07 CVE-2005-2811 Local Security vulnerability in Net-SNMP
Untrusted search path vulnerability in Net-SNMP 5.2.1.2 and earlier, on Gentoo Linux, installs certain Perl modules with an insecure DT_RPATH, which could allow local users to gain privileges.
local
low complexity
net-snmp
4.6
2005-09-07 CVE-2005-2810 Local Security vulnerability in Urban
Multiple stack-based buffer overflows in urban before 1.5.3 allow local users to gain privileges via a long HOME environment variable to (1) config.cc, (2) game.cc, (3) highscor.cc, or (4) meny.cc.
local
low complexity
urban
7.2
2005-09-07 CVE-2005-2809 Unspecified vulnerability in Silc Secure Internet Live Conferencing
silc daemon (silcd.c) in Secure Internet Live Conferencing (SILC) 1.0 and earlier allows local users to overwrite arbitrary files via a symlink attack on the silcd.[PID].stats temporary file.
local
low complexity
silc
2.1
2005-09-07 CVE-2005-2808 Security Bypass vulnerability in Frox 0.7.16/0.7.17
frox 0.7.16 and 0.7.17 does not properly parse certain Deny ACLs, which might allow attackers to bypass intended restrictions and access blocked hosts.
network
low complexity
frox
7.5
2005-09-07 CVE-2005-2807 Unspecified vulnerability in Frox 0.7.18
frox 0.7.18, when running setuid root, does not properly drop privileges when reading a configuration file, which allows local users to read portions of arbitrary files via the -f command line option.
local
low complexity
frox
7.2
2005-09-07 CVE-2005-2796 Remote Denial Of Service vulnerability in Squid Proxy SSLConnectTimeout
The sslConnectTimeout function in ssl.c for Squid 2.5.STABLE10 and earlier allows remote attackers to cause a denial of service (segmentation fault) via certain crafted requests.
network
low complexity
squid
5.0
2005-09-07 CVE-2005-2794 Remote Denial Of Service vulnerability in Squid Proxy Aborted Requests
store.c in Squid 2.5.STABLE10 and earlier allows remote attackers to cause a denial of service (crash) via certain aborted requests that trigger an assert error related to STORE_PENDING.
network
low complexity
squid
5.0
2005-09-06 CVE-2005-2763 Unspecified vulnerability in Openttd
Multiple format string vulnerabilities in OpenTTD before 0.4.0.1 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors.
network
low complexity
openttd
7.5
2005-09-06 CVE-2005-2656 Local Denial of Service vulnerability in Polygen 1.0.6
Polygen before 1.0.6 generates precompiled grammar objects with world-writable permissions, which allows local users to cause a denial of service (disk consumption) and possibly perform other unauthorized activities.
local
low complexity
polygen
2.1