Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-0711 Remote vulnerability in MySQL AB MySQL
MySQL 4.0.23 and earlier, and 4.1.x up to 4.1.10, uses predictable file names when creating temporary tables, which allows local users with CREATE TEMPORARY TABLE privileges to overwrite arbitrary files via a symlink attack.
local
low complexity
mysql oracle
2.1
2005-05-02 CVE-2005-0664 Unspecified vulnerability in Libexif 0.6.9
Buffer overflow in the EXIF library (libexif) 0.6.9 does not properly validate the structure of the EXIF tags, which allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a JPEG image with a crafted EXIF tag.
network
high complexity
libexif
2.6
2005-05-02 CVE-2005-0652 Local Security vulnerability in Openvms
Unknown vulnerability in HP OpenVMS VAX 7.x and 6.x and OpenVMS Alpha 7.x or 6.x allows local users to access privileged files.
local
low complexity
hp
2.1
2005-05-02 CVE-2005-0596 Denial Of Service vulnerability in PHP 4.0
PHP 4 (PHP4) allows attackers to cause a denial of service (daemon crash) by using the readfile function on a file whose size is a multiple of the page size.
local
low complexity
php
2.1
2005-05-02 CVE-2005-0591 Unspecified vulnerability in Mozilla Firefox
Firefox before 1.0.1 allows remote attackers to spoof the (1) security and (2) download modal dialog boxes, which could be used to trick users into executing script or downloading and executing a file, aka "Firespoofing."
network
high complexity
mozilla
2.6
2005-05-02 CVE-2005-0586 Remote vulnerability in Mozilla Suite
Firefox before 1.0.1 and Mozilla before 1.7.6 allows remote malicious web sites to spoof the extensions of files to download via the Content-Disposition header, which could be used to trick users into downloading dangerous content.
network
high complexity
mozilla
2.6
2005-05-02 CVE-2005-0584 Unspecified vulnerability in Mozilla Firefox and Mozilla
Firefox before 1.0.1 and Mozilla before 1.7.6, when displaying the HTTP Authentication dialog, do not change the focus to the tab that generated the prompt, which could facilitate spoofing and phishing attacks.
network
high complexity
mozilla
2.6
2005-05-02 CVE-2005-0578 Remote vulnerability in Mozilla Suite
Firefox before 1.0.1 and Mozilla Suite before 1.7.6 use a predictable filename for the plugin temporary directory, which allows local users to delete arbitrary files of other users via a symlink attack on the plugtmp directory.
local
low complexity
mozilla
2.1
2005-05-02 CVE-2005-0576 File Corruption vulnerability in SUN Solaris 9.0
Unknown vulnerability in Standard Type Services Framework (STSF) Font Server Daemon (stfontserverd) in Solaris 9 allows local users to modify or delete arbitrary files.
local
low complexity
sun
3.6
2005-05-02 CVE-2005-0550 Unspecified vulnerability in Microsoft Windows 2000, Windows 2003 Server and Windows XP
Buffer overflow in Microsoft Windows 2000, Windows XP SP1 and SP2, and Windows Server 2003 allows local users to cause a denial of service (i.e., system crash) via a malformed request, aka "Object Management Vulnerability".
local
low complexity
microsoft
2.1