Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2005-07-12 CVE-2005-2233 Local Buffer Overflow vulnerability in IBM AIX Penable Command Line Argument
Buffer overflow in multiple "p" commands in IBM AIX 5.1, 5.2 and 5.3 might allow local users to execute arbitrary code via long command line arguments to (1) penable or other hard-linked files including (2) pdisable, (3) pstart, (4) phold, (5) pdelay, or (6) pshare.
local
low complexity
ibm
7.2
2005-07-12 CVE-2005-2232 Local Buffer Overflow vulnerability in IBM AIX 5.1/5.2/5.3
Buffer overflow in invscout in IBM AIX 5.1.0 through 5.3.0 might allow local users to execute arbitrary code via a long command line argument.
local
low complexity
ibm
4.6
2005-07-12 CVE-2005-2231 Unspecified vulnerability in High Availability Linux Project Heartbeat 1.2.3
High Availability Linux Project Heartbeat 1.2.3 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
local
low complexity
high-availability-linux-project
2.1
2005-07-12 CVE-2005-2230 Unspecified vulnerability in Elmo
Electronic Mail Operator (elmo) 1.3.2-r1 and earlier creates the elmostats temporary file insecurely, which allows local users to overwrite arbitrary files.
local
low complexity
elmo
2.1
2005-07-12 CVE-2005-2229 Information Disclosure vulnerability in Blog Torrent
Blog Torrent 0.92 and earlier stores sensitive files under the web document root in the (1) data or (2) torrents directories with insufficient access control, which allows remote attackers to obtain sensitive information such as account names and password hashes, as demonstrated using data/newusers.
network
low complexity
blog-torrent
7.5
2005-07-12 CVE-2005-2228 Information Disclosure vulnerability in BDC Enterprises web WIZ Forums 7.9/7.91/8.0Alpha
Web Wiz Forums 7.9 and 8.0 allows remote attackers to view message titles of a hidden forum.
network
low complexity
bdc-enterprises
5.0
2005-07-12 CVE-2005-2227 Local Information Disclosure vulnerability in Softiacom Wmailserver 1.0
Softiacom wMailserver 1.0 stores passwords in plaintext in the Darsite\MAILSRV\Admin key, which allows local users to gain administrator privileges.
local
low complexity
softiacom
7.2
2005-07-12 CVE-2005-2226 Multiple vulnerability in Microsoft Outlook Express 6.0
Microsoft Outlook Express 6.0 leaks the default news server account when a user responds to a "watched" conversation thread, which could allow remote attackers to obtain sensitive information.
network
low complexity
microsoft
5.0
2005-07-12 CVE-2005-2223 Denial-Of-Service vulnerability in Mailenable Professional and Mailenable Standard
Unknown vulnerability in the SMTP service in MailEnable Standard before 1.9 and Professional before 1.6 allows remote attackers to cause a denial of service (crash) during authentication.
network
low complexity
mailenable
5.0
2005-07-12 CVE-2005-2222 Remote Security vulnerability in MailEnable Professional
Unknown vulnerability in the HTTPMail service in MailEnable Professional before 1.6 has unknown impact and attack vectors.
network
low complexity
mailenable
critical
10.0