Vulnerabilities (CVE)

Total 254016 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0285 1 Xfree86 Project 1 X11r6 2024-02-04 7.2 HIGH N/A
Buffer overflow in XFree86 3.3.x allows local users to execute arbitrary commands via a long -xkbmap parameter.
CVE-2003-1199 1 Myproxy 1 Myproxy 2024-02-04 6.8 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in MyProxy 20030629 allows remote attackers to inject arbitrary web script or HTML via the URL.
CVE-1999-1356 1 Compaq 1 Smartstart 2024-02-04 4.6 MEDIUM N/A
Compaq Integration Maintenance Utility as used in Compaq Insight Manager agent before SmartStart 4.50 modifies the legal notice caption (LegalNoticeCaption) and text (LegalNoticeText) in Windows NT, which could produce a legal notice that is in violation of the security policy.
CVE-1999-1286 1 Sgi 1 Irix 2024-02-04 7.2 HIGH N/A
addnetpr in SGI IRIX 6.2 and earlier allows local users to modify arbitrary files and possibly gain root access via a symlink attack on a temporary file.
CVE-1999-0693 3 Hp, Ibm, Sco 3 Hp-ux, Aix, Unixware 2024-02-04 7.2 HIGH N/A
Buffer overflow in TT_SESSION environment variable in ToolTalk shared library allows local users to gain root privileges.
CVE-2003-0606 2 Cvsup, Sup 2 Cvsup-mirror, Sup 2024-02-04 4.6 MEDIUM N/A
sup 1.8 and earlier does not properly create temporary files, which allows local users to overwrite arbitrary files.
CVE-2001-0037 1 Keware Technologies 1 Homeseer 2024-02-04 5.0 MEDIUM N/A
Directory traversal vulnerability in HomeSeer before 1.4.29 allows remote attackers to read arbitrary files via a URL containing .. (dot dot) specifiers.
CVE-2002-1899 1 Icewarp 1 Web Mail 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in IceWarp Web Mail 3.3.3 and 3.4.5 allows remote attackers to inject arbitrary web script or HTML via the "Full Name" (addressname) parameter.
CVE-2001-0089 1 Microsoft 1 Internet Explorer 2024-02-04 2.6 LOW N/A
Internet Explorer 5.0 through 5.5 allows remote attackers to read arbitrary files from the client via the INPUT TYPE element in an HTML form, aka the "File Upload via Form" vulnerability.
CVE-2003-0507 1 Microsoft 1 Windows 2000 2024-02-04 7.5 HIGH N/A
Stack-based buffer overflow in Active Directory in Windows 2000 before SP4 allows remote attackers to cause a denial of service (reboot) and possibly execute arbitrary code via an LDAP version 3 search request with a large number of (1) "AND," (2) "OR," and possibly other statements, which causes LSASS.EXE to crash.
CVE-2000-0029 1 Sco 1 Unixware 2024-02-04 4.6 MEDIUM N/A
UnixWare pis and mkpis commands allow local users to gain privileges via a symlink attack.
CVE-1999-0323 4 Bsdi, Freebsd, Netbsd and 1 more 4 Bsd Os, Freebsd, Netbsd and 1 more 2024-02-04 10.0 HIGH N/A
FreeBSD mmap function allows users to modify append-only or immutable files.
CVE-2000-0299 1 Apple 1 Webobjects 2024-02-04 5.0 MEDIUM N/A
Buffer overflow in WebObjects.exe in the WebObjects Developer 4.5 package allows remote attackers to cause a denial of service via an HTTP request with long headers such as Accept.
CVE-2001-1415 1 Openbsd 1 Openbsd 2024-02-04 4.6 MEDIUM N/A
vi.recover in OpenBSD before 3.1 allows local users to remove arbitrary zero-byte files such as device nodes.
CVE-2000-0987 1 Oracle 2 Internet Directory, Oracle8i 2024-02-04 4.6 MEDIUM N/A
Buffer overflow in oidldapd in Oracle 8.1.6 allow local users to gain privileges via a long "connect" command line parameter.
CVE-1999-1272 1 Sgi 1 Irix 2024-02-04 7.2 HIGH N/A
Buffer overflows in CDROM Confidence Test program (cdrom) allow local users to gain root privileges.
CVE-2003-1077 1 Sun 1 Solaris 2024-02-04 2.1 LOW N/A
Unknown vulnerability in UFS for Solaris 9 for SPARC, with logging enabled, allows local users to cause a denial of service (UFS file system hang).
CVE-2002-0658 1 Ossp 1 Mm 2024-02-04 6.2 MEDIUM N/A
OSSP mm library (libmm) before 1.2.0 allows the local Apache user to gain privileges via temporary files, possibly via a symbolic link attack.
CVE-2000-1162 1 Aladdin Enterprises 1 Ghostscript 2024-02-04 3.7 LOW N/A
ghostscript before 5.10-16 allows local users to overwrite files of other users via a symlink attack.
CVE-2004-0260 1 Cactusoft 1 Cactushop Lite 2024-02-04 5.0 MEDIUM N/A
The AddToMailingList function in CactuSoft CactuShop 5.0 Lite contains a backdoor that allows remote attackers to delete arbitrary files via an email address that starts with |||.