Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2005-06-08 CVE-2005-1941 Incorrect Default Permissions vulnerability in Silvercity Project Silvercity
SilverCity before 0.9.5-r1 installs (1) cgi-styler-form.py, (2) cgi-styler.py, and (3) source2html.py with read and write world permissions, which allows local users to execute arbitrary code.
local
low complexity
silvercity-project CWE-276
7.8
2005-06-08 CVE-2005-1758 Remote vulnerability in Novell NetMail
Buffer overflow in the IMAP command continuation function in Novell NetMail 3.52 before 3.52C may allow remote attackers to execute arbitrary code.
network
low complexity
novell
7.5
2005-06-08 CVE-2005-1757 Remote vulnerability in Novell NetMail
Buffer overflow in the Modweb agent for Novell NetMail 3.52 before 3.52C, when renaming folders, may allow attackers to execute arbitrary code.
network
low complexity
novell
7.5
2005-06-08 CVE-2005-1756 Remote vulnerability in Novell NetMail
Cross-site scripting (XSS) vulnerability in the ModWeb agent for Novell NetMail 3.52 before 3.52C allows remote attackers to inject arbitrary web script or HTML via calendar display fields.
network
novell
4.3
2005-06-08 CVE-2005-1728 Unspecified vulnerability in Apple mac OS X 10.4/10.4.1
MCX Client for Apple Mac OS X 10.4.x up to 10.4.1 insecurely logs Portable Home Directory credentials, which allows local users to obtain the credentials.
local
low complexity
apple
4.6
2005-06-08 CVE-2005-1727 Unspecified vulnerability in Apple mac OS X Server 10.4/10.4.1
Apple Mac OS X 10.4.x up to 10.4.1 sets insecure world- and group-writable permissions for the (1) system cache folder and (2) Dashboard system widgets, which allows local users to conduct unauthorized file operations via "file race conditions."
local
high complexity
apple
3.7
2005-06-08 CVE-2005-1725 Unspecified vulnerability in Apple mac OS X Server 10.4/10.4.1
launchd 106 in Apple Mac OS X 10.4.x up to 10.4.1 allows local users to overwrite arbitrary files via a symlink attack on the socket file in an insecure temporary directory.
local
low complexity
apple
2.1
2005-06-08 CVE-2005-1724 Unspecified vulnerability in Apple mac OS X Server 10.4/10.4.1
NFS on Apple Mac OS X 10.4.x up to 10.4.1 does not properly obey the -network or -mask flags for a filesystem and exports it to everyone, which allows remote attackers to bypass intended access restrictions.
network
low complexity
apple
7.5
2005-06-08 CVE-2005-1723 Unspecified vulnerability in Apple mac OS X Server 10.4/10.4.1
LaunchServices in Apple Mac OS X 10.4.x up to 10.4.1 does not properly mark file extensions and MIME types as unsafe if an Apple Uniform Type Identifier (UTI) is not created when the type is added to the database of unsafe types, which could allow attackers to bypass intended restrictions.
network
low complexity
apple
7.5
2005-06-08 CVE-2005-0756 Resource Management Errors vulnerability in Linux Kernel 2.6.8.1
ptrace in Linux kernel 2.6.8.1 does not properly verify addresses on the amd64 platform, which allows local users to cause a denial of service (kernel crash).
local
low complexity
linux CWE-399
2.1