Vulnerabilities (CVE)

Total 254037 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2004-1650 1 D-link 1 Dcs-900 Internet Camera 2024-02-04 7.5 HIGH N/A
D-Link DCS-900 Internet Camera listens on UDP port 62976 for an IP address, which allows remote attackers to change the IP address of the camera via a UDP broadcast packet.
CVE-2003-0773 1 Sane 2 Sane, Sane-backend 2024-02-04 7.5 HIGH N/A
saned in sane-backends 1.0.7 and earlier does not check the IP address of the connecting host during the SANE_NET_INIT RPC call, which allows remote attackers to use that call even if they are restricted in saned.conf.
CVE-2000-0430 1 Mcmurtrey Whitaker And Associates 1 Cart32 2024-02-04 5.0 MEDIUM N/A
Cart32 allows remote attackers to access sensitive debugging information by appending /expdate to the URL request.
CVE-2002-1184 1 Microsoft 2 Windows 2000, Windows Nt 2024-02-04 4.6 MEDIUM N/A
The system root folder of Microsoft Windows 2000 has default permissions of Everyone group with Full access (Everyone:F) and is in the search path when locating programs during login or application launch from the desktop, which could allow attackers to gain privileges as other users via Trojan horse programs.
CVE-2003-1270 1 An 1 An-http 2024-02-04 5.0 MEDIUM N/A
AN HTTP 1.41e allows remote attackers to cause a denial of service (borken pipe) via an HTTP request to aux.cgi with a long argument, possibly triggering a buffer overflow or MS-DOS device vulnerability.
CVE-2003-0751 1 Py-membres 1 Py-membres 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in pass_done.php for PY-Membres 4.2 and earlier allows remote attackers to execute arbitrary SQL queries via the email parameter.
CVE-1999-0192 2 Redhat, Slackware 2 Linux, Slackware Linux 2024-02-04 10.0 HIGH N/A
Buffer overflow in telnet daemon tgetent routing allows remote attackers to gain root access via the TERMCAP environmental variable.
CVE-2004-1976 1 Smc Networks 1 Smc7004vbr 2024-02-04 7.5 HIGH N/A
SMC Barricade broadband router 7008ABR and 7004VBR enable remote administration by default, which allows remote attackers to gain access by connecting to port 1900.
CVE-2003-0142 1 Adobe 1 Acrobat Reader 2024-02-04 5.0 MEDIUM N/A
Adobe Acrobat Reader (acroread) 6, under certain circumstances when running with the "Certified plug-ins only" option disabled, loads plug-ins with signatures used for older versions of Acrobat, which can allow attackers to cause Acrobat to enter Certified mode and run untrusted plugins by modifying the CTIsCertifiedMode function.
CVE-2003-0877 1 Apple 1 Mac Os X 2024-02-04 4.6 MEDIUM N/A
Mac OS X before 10.3 with core files enabled allows local users to overwrite arbitrary files and read core files via a symlink attack on core files that are created with predictable names in the /cores directory.
CVE-2002-0094 1 Fraunhofer Fit 1 Bscw 2024-02-04 7.5 HIGH N/A
config_converters.py in BSCW (Basic Support for Cooperative Work) 3.x and versions before 4.06 allows remote attackers to execute arbitrary commands via shell metacharacters in the file name during filename conversion.
CVE-2002-0979 1 Microsoft 1 Virtual Machine 2024-02-04 7.5 HIGH N/A
The Java logging feature for the Java Virtual Machine in Internet Explorer writes output from functions such as System.out.println to a known pathname, which can be used to execute arbitrary code.
CVE-2002-2393 1 Solarwinds 1 Serv-u File Server 2024-02-04 5.0 MEDIUM N/A
Serv-U FTP server 3.0, 3.1 and 4.0.0.4 does not accept new connections while validating user folder access rights, which allows remote attackers to cause a denial of service (no new connections) via a series of MKD commands.
CVE-2001-1385 2 Mandrakesoft, Php 2 Mandrake Linux, Php 2024-02-04 5.0 MEDIUM N/A
The Apache module for PHP 4.0.0 through PHP 4.0.4, when disabled with the 'engine = off' option for a virtual host, may disable PHP for other virtual hosts, which could cause Apache to serve the source code of PHP scripts.
CVE-2002-1159 1 Canna 1 Canna 2024-02-04 6.4 MEDIUM N/A
Canna 3.6 and earlier does not properly validate requests, which allows remote attackers to cause a denial of service or information leak.
CVE-1999-0271 2024-02-04 5.0 MEDIUM N/A
Progressive Networks Real Video server (pnserver) can be crashed remotely.
CVE-2000-0750 3 Netbsd, Openbsd, Redhat 3 Netbsd, Openbsd, Linux 2024-02-04 7.5 HIGH N/A
Buffer overflow in mopd (Maintenance Operations Protocol loader daemon) allows remote attackers to execute arbitrary commands via a long file name.
CVE-2004-1691 1 Rhinosoft 1 Dns4me 2024-02-04 5.0 MEDIUM N/A
The Web Server in DNS4Me 3.0.0.4 allows remote attackers to cause a denial of service (CPU consumption and crash) via a large amount of data.
CVE-2001-1565 1 Apple 1 Mac Os X 2024-02-04 2.1 LOW N/A
Point to Point Protocol daemon (pppd) in MacOS x 10.0 and 10.1 through 10.1.5 provides the username and password on the command line, which allows local users to obtain authentication information via the ps command.
CVE-2000-0255 1 Nbase-xyplex 1 Edgeblaster 2024-02-04 5.0 MEDIUM N/A
The Nbase-Xyplex EdgeBlaster router allows remote attackers to cause a denial of service via a scan for the FormMail CGI program.