Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2005-07-19 CVE-2005-2196 Unspecified vulnerability in Apple Airport Card
The Apple AirPort card uses a default WEP key when not connected to a known or trusted network, which can cause it to automatically connect to a malicious network.
local
low complexity
apple
2.1
2005-07-18 CVE-2005-2294 Information Disclosure vulnerability in Forms And Reports
Oracle Forms 4.5, 6.0, 6i, and 9i on Unix, when a large number of records are retrieved by an Oracle form, stores a copy of the database tables in a world-readable temporary file, which allows local users to gain sensitive information such as credit card numbers.
local
low complexity
oracle
2.1
2005-07-18 CVE-2005-2292 Information Disclosure vulnerability in Oracle Jdeveloper 10.1.2/9.0.4/9.0.5
Oracle JDeveloper 9.0.4, 9.0.5, and 10.1.2 stores cleartext passwords in (1) IDEConnections.xml, (2) XSQLConfig.xml and (3) settings.xml, which allows local users to obtain sensitive information.
local
low complexity
oracle
2.1
2005-07-18 CVE-2005-2283 Unspecified vulnerability in ESI products Webeoc
WebEOC before 6.0.2 does not properly restrict the size of an uploaded file, which allows remote authenticated users to cause a denial of service (system and database resource consumption) via a large file.
local
low complexity
esi-products
2.1
2005-07-18 CVE-2005-1914 Unspecified vulnerability in Centericq
CenterICQ 4.20.0 and earlier creates temporary files with predictable file names, which allows local users to overwrite arbitrary files via a symlink attack on the gg.token.PID temporary file.
local
low complexity
centericq
2.1
2005-07-13 CVE-2005-2274 Unspecified vulnerability in Microsoft Internet Explorer 6.0
Microsoft Internet Explorer 6.0 does not clearly associate a Javascript dialog box with the web page that generated it, which allows remote attackers to spoof a dialog box from a trusted site and facilitates phishing attacks, aka the "Dialog Origin Spoofing Vulnerability."
network
high complexity
microsoft
2.6
2005-07-13 CVE-2005-2273 Unspecified vulnerability in Opera Browser
Opera 7.x and 8 before 8.01 does not clearly associate a Javascript dialog box with the web page that generated it, which allows remote attackers to spoof a dialog box from a trusted site and facilitates phishing attacks, aka the "Dialog Origin Spoofing Vulnerability."
network
high complexity
opera
2.6
2005-07-13 CVE-2005-2272 Unspecified vulnerability in Apple Safari 2.0
Safari version 2.0 (412) does not clearly associate a Javascript dialog box with the web page that generated it, which allows remote attackers to spoof a dialog box from a trusted site and facilitates phishing attacks, aka the "Dialog Origin Spoofing Vulnerability."
network
high complexity
apple
2.6
2005-07-13 CVE-2005-2271 Remote Security vulnerability in Alexander Clauss Icab 2.9.8
iCab 2.9.8 does not clearly associate a Javascript dialog box with the web page that generated it, which allows remote attackers to spoof a dialog box from a trusted site and facilitates phishing attacks, aka the "Dialog Origin Spoofing Vulnerability."
network
high complexity
alexander-clauss
2.6
2005-07-13 CVE-2005-2268 Unspecified vulnerability in Mozilla Firefox and Mozilla
Firefox before 1.0.5 and Mozilla before 1.7.9 does not clearly associate a Javascript dialog box with the web page that generated it, which allows remote attackers to spoof a dialog box from a trusted site and facilitates phishing attacks, aka the "Dialog Origin Spoofing Vulnerability."
network
high complexity
mozilla
2.6