Vulnerabilities (CVE)

Total 253990 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-1999-0457 1 Debian 1 Debian Linux 2024-02-04 7.2 HIGH N/A
Linux ftpwatch program allows local users to gain root privileges.
CVE-2001-0490 1 Nullsoft 1 Winamp 2024-02-04 7.5 HIGH N/A
Buffer overflow in WINAMP 2.6x and 2.7x allows attackers to execute arbitrary code via a long string in an AIP file.
CVE-2002-2133 1 Telindus 1 1120 Adsl Router 2024-02-04 10.0 HIGH N/A
Telindus 1100 ASDL router running firmware 6.0.x uses weak encryption for UDP session traffic, which allows remote attackers to gain unauthorized access by sniffing and decrypting the administrative password.
CVE-2002-1892 1 Netgear 1 Fvs318 2024-02-04 2.1 LOW N/A
NETGEAR FVS318 running firmware 1.1 stores the username and password in a readable format when a backup of the configuration file is made, which allows local users to obtain sensitive information.
CVE-1999-0336 1 Hp 1 Hp-ux 2024-02-04 7.2 HIGH N/A
Buffer overflow in mstm in HP-UX allows local users to gain root access.
CVE-2004-1479 2024-02-04 N/A N/A
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2004-0928. Reason: This candidate is a duplicate of CVE-2004-0928. Notes: All CVE users should reference CVE-2004-0928 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.
CVE-2002-1922 1 Jelsoft 1 Vbulletin 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in global.php in Jelsoft vBulletin 2.0.0 through 2.2.8 allows remote attackers to inject arbitrary web script or HTML via the (1) $scriptpath or (2) $url variables.
CVE-2004-1722 1 Merak 1 Mail Server 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in calendar.html in Merak Mail Server 5.2.7 allows remote attackers to execute arbitrary SQL statements via the schedule parameter.
CVE-2002-0938 1 Cisco 1 Secure Access Control Server 2024-02-04 7.5 HIGH N/A
Cross-site scripting vulnerability in CiscoSecure ACS 3.0 allows remote attackers to execute arbitrary script or HTML as other web users via the action argument in a link to setup.exe.
CVE-1999-0179 1 Microsoft 2 Windows 95, Windows Nt 2024-02-04 5.0 MEDIUM N/A
Windows NT crashes or locks up when a Samba client executes a "cd .." command on a file share.
CVE-1999-0778 1 Xi Graphics 1 Accelerated-x Server 2024-02-04 7.2 HIGH N/A
Buffer overflow in Xi Graphics Accelerated-X server allows local users to gain root access via a long display or query parameter.
CVE-2004-1511 1 Hotfoon Corporation 1 Hotfoon 2024-02-04 5.0 MEDIUM N/A
Hotfoon 4.0 does not notify users before opening links in web browsers, which could allow remote attackers to execute arbitrary code via a certain link sent in a chat window.
CVE-2004-0181 1 Linux 1 Linux Kernel 2024-02-04 2.1 LOW N/A
The JFS file system code in Linux 2.4.x has an information leak in which in-memory data is written to the device for the JFS file system, which allows local users to obtain sensitive information by reading the raw device.
CVE-2000-0995 1 Openbsd 1 Openbsd 2024-02-04 7.2 HIGH N/A
Format string vulnerability in OpenBSD yp_passwd program (and possibly other BSD-based operating systems) allows attackers to gain root privileges a malformed name.
CVE-2000-0395 1 Computalynx 1 Cproxy Server 2024-02-04 5.0 MEDIUM N/A
Buffer overflow in CProxy 3.3 allows remote users to cause a denial of service via a long HTTP request.
CVE-2002-2279 1 Aldap 1 Aldap 2024-02-04 10.0 HIGH N/A
Unspecified vulnerability in the bind function in config.inc of aldap 0.09 allows remote attackers to authenticate with Manager permissions.
CVE-2003-0364 1 Redhat 1 Linux 2024-02-04 5.0 MEDIUM N/A
The TCP/IP fragment reassembly handling in the Linux kernel 2.4 allows remote attackers to cause a denial of service (CPU consumption) via certain packets that cause a large number of hash table collisions.
CVE-2000-0309 1 Openbsd 1 Openbsd 2024-02-04 2.1 LOW N/A
The i386 trace-trap handling in OpenBSD 2.4 with DDB enabled allows a local user to cause a denial of service.
CVE-1999-0415 1 Cisco 1 Cisco 7xx Routers 2024-02-04 7.5 HIGH N/A
The HTTP server in Cisco 7xx series routers 3.2 through 4.2 is enabled by default, which allows remote attackers to change the router's configuration.
CVE-2000-1197 1 University Of Washington 1 Imap 2024-02-04 2.1 LOW N/A
POP2 or POP3 server (pop3d) in imap-uw IMAP package on FreeBSD and other operating systems creates lock files with predictable names, which allows local users to cause a denial of service (lack of mail access) for other users by creating lock files for other mail boxes.