Show filters
400 Total Results
Displaying 381-390 of 400
Sort by:
Attacker Value
Unknown
CVE-2007-3728
Disclosure Date: July 12, 2007 (last updated October 04, 2023)
Buffer overflow in lib/silcclient/client_notify.c of SILC Client and SILC Toolkit before 1.1.2 allows remote attackers to cause a denial of service via "NICK_CHANGE" notifications.
0
Attacker Value
Unknown
CVE-2007-2784
Disclosure Date: May 21, 2007 (last updated October 04, 2023)
Unspecified vulnerability in globus-job-manager in Globus Toolkit 4.1.1 and earlier (globus_nexus-6.6 and earlier) allows remote attackers to cause a denial of service (resource exhaustion and system crash) via certain requests to temporary TCP ports for a GRAM2 job or its MPICH-G2 applications.
0
Attacker Value
Unknown
CVE-2007-2376
Disclosure Date: April 30, 2007 (last updated October 04, 2023)
The Dojo framework exchanges data using JavaScript Object Notation (JSON) without an associated protection scheme, which allows remote attackers to obtain the data via a web page that retrieves the data through a URL in the SRC attribute of a SCRIPT element and captures the data using other JavaScript code, aka "JavaScript Hijacking."
0
Attacker Value
Unknown
CVE-2007-2378
Disclosure Date: April 30, 2007 (last updated October 04, 2023)
The Google Web Toolkit (GWT) framework exchanges data using JavaScript Object Notation (JSON) without an associated protection scheme, which allows remote attackers to obtain the data via a web page that retrieves the data through a URL in the SRC attribute of a SCRIPT element and captures the data using other JavaScript code, aka "JavaScript Hijacking."
0
Attacker Value
Unknown
CVE-2006-6489
Disclosure Date: January 18, 2007 (last updated October 04, 2023)
The SISCO OSI stack, as used in SISCO MMS-EASE, ICCP Toolkit for MMS-EASE, AX-S4 MMS and AX-S4 ICCP, and possibly other control system applications, allows remote attackers to cause a denial of service (application termination and restart) via malformed packets.
0
Attacker Value
Unknown
CVE-2007-0201
Disclosure Date: January 11, 2007 (last updated October 04, 2023)
Buffer overflow in the cmd_usr function in ftp-gw in TIS Internet Firewall Toolkit (FWTK) allows remote attackers to execute arbitrary code via a long destination hostname (dest).
0
Attacker Value
Unknown
CVE-2006-5067
Disclosure Date: September 28, 2006 (last updated November 08, 2023)
PHP remote file inclusion vulnerability in loader.php in PHP System Administration Toolkit (PHPSaTK) allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[config] parameter. NOTE: this issue is disputed by CVE; analysis shows that the GLOBALS[config] variable is initialized before being used
0
Attacker Value
Unknown
CVE-2006-4233
Disclosure Date: August 18, 2006 (last updated October 04, 2023)
Globus Toolkit 3.2.x, 4.0.x, and 4.1.0 before 20060815 allow local users to obtain sensitive information (proxy certificates) and overwrite arbitrary files via a symlink attack on temporary files in the /tmp directory, as demonstrated by files created by (1) myproxy-admin-adduser, (2) grid-ca-sign, and (3) grid-security-config.
0
Attacker Value
Unknown
CVE-2006-4232
Disclosure Date: August 18, 2006 (last updated October 04, 2023)
Race condition in the grid-proxy-init tool in Globus Toolkit 3.2.x, 4.0.x, and 4.1.0 before 20060815 allows local users to steal credential data by replacing the proxy credentials file in between file creation and the check for exclusive file access.
0
Attacker Value
Unknown
CVE-2006-3309
Disclosure Date: June 29, 2006 (last updated October 04, 2023)
SQL injection vulnerability in SPT--ForumTopics.php in Scout Portal Toolkit (SPT) 1.4.0 and earlier allows remote attackers to execute arbitrary SQL commands via the forumid parameter.
0