Page 7 of 35 results (0.001 seconds)

CVSS: 7.5EPSS: 1%CPEs: 1EXPL: 2

Aladdin eSafe Gateway versions 2.x allows a remote attacker to circumvent HTML SCRIPT filtering via a special arrangement of HTML tags which includes SCRIPT tags embedded within other SCRIPT tags. • https://www.exploit-db.com/exploits/20890 http://archives.neohapsis.com/archives/bugtraq/2001-05/0282.html https://exchange.xforce.ibmcloud.com/vulnerabilities/6580 •

CVSS: 4.6EPSS: 0%CPEs: 5EXPL: 0

ghostscript before 5.10-16 uses an empty LD_RUN_PATH environmental variable to find libraries in the current directory, which could allow local users to execute commands as other users by placing a Trojan horse library into a directory from which another user executes ghostscript. • http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000343 http://www.calderasystems.com/support/security/advisories/CSSA-2000-041.0.txt http://www.debian.org/security/2000/20001123 http://www.linux-mandrake.com/en/security/MDKSA-2000-074.php3 http://www.securityfocus.com/bid/1991 https://exchange.xforce.ibmcloud.com/vulnerabilities/5564 •

CVSS: 3.7EPSS: 0%CPEs: 4EXPL: 0

ghostscript before 5.10-16 allows local users to overwrite files of other users via a symlink attack. • http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000343 http://www.calderasystems.com/support/security/advisories/CSSA-2000-041.0.txt http://www.debian.org/security/2000/20001123 http://www.linux-mandrake.com/en/security/MDKSA-2000-074.php3 http://www.redhat.com/support/errata/RHSA-2000-114.html http://www.securityfocus.com/bid/1990 https://exchange.xforce.ibmcloud.com/vulnerabilities/5563 •

CVSS: 4.6EPSS: 0%CPEs: 1EXPL: 1

The Aladdin Knowledge Systems eToken device allows attackers with physical access to the device to obtain sensitive information without knowing the PIN of the owner by resetting the PIN in the EEPROM. • https://www.exploit-db.com/exploits/19894 http://www.l0pht.com/advisories/etoken-piepa.txt http://www.osvdb.org/3266 http://www.securityfocus.com/bid/1170 •

CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 0

The ghostscript command with the -dSAFER option allows remote attackers to execute commands. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0155 •