Vulnerabilities (CVE)

Total 240438 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2001-0769 1 Steve Poulsen 1 Guildftpd 2024-02-04 5.0 MEDIUM N/A
Memory leak in GuildFTPd Server 0.97 allows remote attackers to cause a denial of service via a request containing a null character.
CVE-2002-0362 1 Aol 1 Instant Messenger 2024-02-04 7.5 HIGH N/A
Buffer overflow in AOL Instant Messenger (AIM) 4.2 and later allows remote attackers to execute arbitrary code via a long AddExternalApp request and a TLV type greater than 0x2711.
CVE-2001-1359 1 Caldera 1 Volution 2024-02-04 10.0 HIGH N/A
Volution clients 1.0.7 and earlier attempt to contact the computer creation daemon (CCD) when an LDAP authentication failure occurs, which allows remote attackers to fully control clients via a Trojan horse Volution server.
CVE-2000-0160 1 Microsoft 3 Ie, Internet Explorer, Outlook 2024-02-04 7.6 HIGH N/A
The Microsoft Active Setup ActiveX component in Internet Explorer 4.x and 5.x allows a remote attacker to install software components without prompting the user by stating that the software's manufacturer is Microsoft.
CVE-2002-1560 1 Martin Bauer 1 Gbook 2024-02-04 10.0 HIGH N/A
index.php in gBook 1.4 allows remote attackers to bypass authentication and gain administrative privileges by setting the login parameter to true.
CVE-2003-1174 1 Nullsoft 1 Shoutcast Server 2024-02-04 2.1 LOW N/A
Buffer overflow in NullSoft Shoutcast Server 1.9.2 allows local users to cause a denial of service via (1) icy-name followed by a long server name or (2) icy-url followed by a long URL.
CVE-2002-0667 1 Pingtel 1 Xpressa 2024-02-04 10.0 HIGH N/A
Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 1.2.7.4 has a default null administrator password, which could allow remote attackers to gain access to the phone.
CVE-2002-0906 1 Sendmail 1 Sendmail 2024-02-04 7.5 HIGH N/A
Buffer overflow in Sendmail before 8.12.5, when configured to use a custom DNS map to query TXT records, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a malicious DNS server.
CVE-2002-2128 1 W-agora 1 W-agora 2024-02-04 4.6 MEDIUM N/A
editform.php in w-Agora 4.1.5 allows local users to execute arbitrary PHP code via .. (dot dot) sequences in the file parameter.
CVE-2003-0012 1 Mozilla 1 Bugzilla 2024-02-04 2.1 LOW N/A
The data collection script for Bugzilla 2.14.x before 2.14.5, 2.16.x before 2.16.2, and 2.17.x before 2.17.3 sets world-writable permissions for the data/mining directory when it runs, which allows local users to modify or delete the data.
CVE-1999-1120 1 Sgi 1 Irix 2024-02-04 4.6 MEDIUM N/A
netprint in SGI IRIX 6.4 and earlier trusts the PATH environmental variable for finding and executing the disable program, which allows local users to gain privileges.
CVE-2001-0978 1 Hp 1 Hp-ux 2024-02-04 7.5 HIGH N/A
login in HP-UX 10.26 does not record failed login attempts in /var/adm/btmp, which could allow attackers to conduct brute force password guessing attacks without being detected or observed using the lastb program.
CVE-2001-1310 1 Ibm 1 Secureway Directory 2024-02-04 7.5 HIGH N/A
IBM SecureWay 3.2.1 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, via invalid encodings for the L field of a BER encoding, as demonstrated by the PROTOS LDAPv3 test suite.
CVE-2002-1500 1 Netbsd 1 Netbsd 2024-02-04 7.2 HIGH N/A
Buffer overflow in (1) mrinfo, (2) mtrace, and (3) pppd in NetBSD 1.4.x through 1.6 allows local users to gain privileges by executing the programs after filling the file descriptor tables, which produces file descriptors larger than FD_SETSIZE, which are not checked by FD_SET().
CVE-1999-1252 1 Sco 1 Unixware 2024-02-04 7.2 HIGH N/A
Vulnerability in a certain system call in SCO UnixWare 2.0.x and 2.1.0 allows local users to access arbitrary files and gain root privileges.
CVE-2000-0230 2 Halloween, Redhat 2 Halloween Linux, Linux 2024-02-04 7.2 HIGH N/A
Buffer overflow in imwheel allows local users to gain root privileges via the imwheel-solo script and a long HOME environmental variable.
CVE-2000-0764 1 Intel 1 Express 8100 2024-02-04 5.0 MEDIUM N/A
Intel Express 500 series switches allow a remote attacker to cause a denial of service via a malformed IP packet.
CVE-2004-2122 1 Intra Forum 1 Intra Forum 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in intraforum_db.cgi in Intra Forum allows remote attackers to inject arbitrary web script or HTML via the (1) use_last_read or (2) forum parameters.
CVE-2003-0820 1 Microsoft 2 Word, Works 2024-02-04 7.5 HIGH N/A
Microsoft Word 97, 98(J), 2000, and 2002, and Microsoft Works Suites 2001 through 2004, do not properly check the length of the "Macro names" data value, which could allow remote attackers to execute arbitrary code via a buffer overflow attack.
CVE-2003-1082 1 Sun 2 Solaris, Sunos 2024-02-04 7.2 HIGH N/A
Buffer overflow in utmp_update for Solaris 2.6 through 9 allows local users to gain root privileges, as identified by Sun BugID 4705891, a different vulnerability than CVE-2003-1068.