Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2005-06-02 CVE-2005-1903 Local Security vulnerability in SPA-PRO Mail
Buffer overflow in the IMAP service for SPA-PRO Mail @Solomon 4.00 allows remote authenticated users to execute arbitrary code via a long CREATE command.
local
low complexity
e-post-corporation
2.1
2005-06-01 CVE-2005-1793 Denial-Of-Service vulnerability in Windows 98SE
User32.DLL in Microsoft Windows 98SE, and possibly other operating systems, allows local and remote attackers to cause a denial of service (crash) via an icon (.ico) bitmap file with large width and height values.
network
high complexity
microsoft
2.6
2005-06-01 CVE-2005-1790 Resource Management Errors vulnerability in Microsoft Internet Explorer 6.0.2800.1106/6.0.2900.2180
Microsoft Internet Explorer 6 SP2 6.0.2900.2180 and 6.0.2800.1106, and earlier versions, allows remote attackers to cause a denial of service (crash) and execute arbitrary code via a Javascript BODY onload event that calls the window function, aka "Mismatched Document Object Model Objects Memory Corruption Vulnerability."
network
high complexity
microsoft CWE-399
2.6
2005-05-31 CVE-2005-1778 Cross-Site Scripting vulnerability in Postnuke Software Foundation Postnuke 0.750
Cross-site scripting (XSS) vulnerability in readpmsg.php in PostNuke 0.750 allows remote attackers to inject arbitrary web script or HTML via the start parameter.
network
high complexity
postnuke-software-foundation CWE-79
2.6
2005-05-31 CVE-2005-1774 Local Security vulnerability in Davfs2 0.2.3
WEB-DAV Linux File System (davfs2) 0.2.3 does not properly enforce Unix permissions, which allows local users to write arbitrary files on a davfs2 mounted filesystem.
local
low complexity
davfs2
2.1
2005-05-31 CVE-2005-1765 Local Denial of Service vulnerability in Linux Kernel 2.6.10/2.6.8.1
syscall in the Linux kernel 2.6.8.1 and 2.6.10 for the AMD64 platform, when running in 32-bit compatibility mode, allows local users to cause a denial of service (kernel hang) via crafted arguments.
local
low complexity
linux
2.1
2005-05-28 CVE-2005-1791 Denial of Service vulnerability in Microsoft IE 6.0
Microsoft Internet Explorer 6 SP2 (6.0.2900.2180) crashes when the user attempts to add a URI to the restricted zone, in which the full domain name of the URI begins with numeric sequences similar to an IP address.
network
high complexity
microsoft
2.6
2005-05-26 CVE-2005-1801 Remote Denial of Service vulnerability in Nokia 9500 vCard Viewer
The vCard viewer in Nokia 9500 allows attackers to cause a denial of service (crash) via a vCard with a long Name field, which causes the crash when the user views it.
network
high complexity
nokia
2.6
2005-05-25 CVE-2005-1751 Unspecified vulnerability in Shtool
Race condition in shtool 2.0.1 and earlier allows local users to create or modify arbitrary files via a symlink attack on the .shtool.$$ temporary file, a different vulnerability than CVE-2005-1759.
local
high complexity
shtool
3.7
2005-05-25 CVE-2005-1152 Unspecified vulnerability in Debian Qpopper 4.0.4/4.0.5
popauth.c in qpopper 4.0.5 and earlier does not properly set the umask, which may cause qpopper to create files with group or world-writable permissions.
local
low complexity
debian
2.1