Search CVE reports


Toggle filters

41 – 50 of 50 results


CVE-2007-6531

Medium priority

Some fixes available 4 of 5

Stack-based buffer overflow in the Panel (xfce4-panel) component in Xfce before 4.4.2 might allow remote attackers to execute arbitrary code via Launcher tooltips. NOTE: a second buffer overflow (over-read) in the xfce_mkdirhier...

1 affected package

xfce4-panel

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xfce4-panel
Show less packages

CVE-2007-5839

Medium priority
Ignored

The e_hostname function in commands.c in BitchX 1.1a allows local users to overwrite arbitrary files via a symlink attack on temporary files when using the (1) HOSTNAME or (2) IRCHOST command.

1 affected package

ircii-pana

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ircii-pana
Show less packages

CVE-2007-4584

Medium priority
Ignored

Stack-based buffer overflow in BitchX 1.1 Final allows remote IRC servers to execute arbitrary code via a long string in a MODE command, related to the p_mode variable.

1 affected package

ircii-pana

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ircii-pana
Show less packages

CVE-2007-3360

Medium priority
Fixed

hook.c in BitchX 1.1-final allows remote IRC servers to execute arbitrary commands by sending a client certain data containing NICK and EXEC strings, which exceeds the bounds of a hash table, and injects an EXEC hook function that...

1 affected package

ircii-pana

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ircii-pana
Show less packages

CVE-2006-2825

Medium priority
Ignored

cPanel does not automatically synchronize the PHP open_basedir configuration directive between the main server and virtual hosts that share physical directories, which might allow a local user to bypass open_basedir restrictions...

1 affected package

cpanel

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cpanel
Show less packages

CVE-2006-2575

Medium priority

Some fixes available 6 of 8

The setFrame function in Lib/2D/Surface.hpp for NetPanzer 0.8 and earlier allows remote attackers to cause a denial of service (crash) via a client flag (frameNum) that is greater than 41, which triggers an assert error.

1 affected package

netpanzer

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
netpanzer
Show less packages

CVE-2006-1119

Medium priority
Ignored

fantastico in Cpanel does not properly handle when it has insufficient permissions to perform certain file operations, which allows remote authenticated users to obtain the full pathname, which is leaked in a PHP error message.

1 affected package

cpanel

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cpanel
Show less packages

CVE-2006-0763

Medium priority
Ignored

Cross-site scripting (XSS) vulnerability in dowebmailforward.cgi in cPanel allows remote attackers to inject arbitrary web script or HTML via a URL encoded value in the fwd parameter.

1 affected package

cpanel

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cpanel
Show less packages

CVE-2006-0533

Medium priority
Ignored

Cross-site scripting (XSS) vulnerability in webmailaging.cgi in cPanel allows remote attackers to inject arbitrary web script or HTML via the numdays parameter.

1 affected package

cpanel

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cpanel
Show less packages

CVE-2005-2295

Medium priority

Some fixes available 7 of 8

NetPanzer 0.8 and earlier allows remote attackers to cause a denial of service (infinite loop) via a packet with a zero datablock size.

1 affected package

netpanzer

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
netpanzer
Show less packages