Vulnerabilities (CVE)

Total 253940 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2002-1761 1 Phprojekt 1 Phprojekt 2024-02-04 5.0 MEDIUM N/A
Directory traversal vulnerability in PHProjekt 2.0 through 3.1 allows remote attackers to read arbitrary files via .. (dot dot) sequences.
CVE-2003-1408 1 Lotus 1 Domino Server 2024-02-04 5.0 MEDIUM N/A
Lotus Domino Server 5.0 and 6.0 allows remote attackers to read the source code for files via an HTTP request with a filename with a trailing dot.
CVE-2004-0579 2 Debian, William Deich 2 Debian Linux, Super 2024-02-04 7.2 HIGH N/A
Format string vulnerability in super before 3.23 allows local users to execute arbitrary code as root.
CVE-1999-1096 1 Kde 1 Kde 2024-02-04 7.2 HIGH N/A
Buffer overflow in kscreensaver in KDE klock allows local users to gain root privileges via a long HOME environmental variable.
CVE-2002-0093 1 Compaq 1 Tru64 2024-02-04 7.2 HIGH N/A
Buffer overflow in ipcs for HP Tru64 UNIX 4.0f through 5.1a may allow attackers to execute arbitrary code, a different vulnerability than CVE-2001-0423.
CVE-1999-0781 3 Freebsd, Kde, Linux 3 Freebsd, Kde, Linux Kernel 2024-02-04 7.2 HIGH N/A
KDE allows local users to execute arbitrary commands by setting the KDEDIR environmental variable to modify the search path that KDE uses to locate its executables.
CVE-2004-1438 1 Subversion 1 Subversion 2024-02-04 2.1 LOW N/A
The mod_authz_svn Apache module for Subversion 1.0.4-r1 and earlier allows remote authenticated users, with write access to the repository, to read unauthorized parts of the repository via the svn copy command.
CVE-2001-1095 1 Ibm 1 Aix 2024-02-04 4.6 MEDIUM N/A
Buffer overflow in uuq in AIX 4 could allow local users to execute arbitrary code via a long -r parameter.
CVE-2000-0351 1 Sco 1 Unixware 2024-02-04 4.6 MEDIUM N/A
Some packaging commands in SCO UnixWare 7.1.0 have insecure privileges, which allows local users to add or remove software packages.
CVE-2001-1048 1 Topher1kenobe 1 Awol 2024-02-04 7.5 HIGH N/A
AWOL PHP script allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable.
CVE-2002-0571 1 Oracle 1 Oracle9i 2024-02-04 7.5 HIGH N/A
Oracle Oracle9i database server 9.0.1.x allows local users to access restricted data via a SQL query using ANSI outer join syntax.
CVE-2003-0046 1 Celestial Software 1 Absolutetelnet 2024-02-04 4.6 MEDIUM N/A
AbsoluteTelnet SSH2 client does not clear logon credentials from memory, including plaintext passwords, which could allow attackers with access to memory to steal the SSH credentials.
CVE-2001-1016 1 Pgp 5 Corporate Desktop, E-business Server, Freeware and 2 more 2024-02-04 7.5 HIGH N/A
PGP Corporate Desktop before 7.1, Personal Security before 7.0.3, Freeware before 7.0.3, and E-Business Server before 7.1 does not properly display when invalid userID's are used to sign a message, which could allow an attacker to make the user believe that the document has been signed by a trusted third party by adding a second, invalid user ID to a key which has already been signed by the third party, aka the "PGPsdk Key Validity Vulnerability."
CVE-2003-1357 2 Microsoft, Replicom 2 Windows Nt, Proxyview 2024-02-04 10.0 HIGH N/A
ProxyView has a default administrator password of Administrator for Embedded Windows NT, which allows remote attackers to gain access.
CVE-2002-2111 1 Gianni Tedesco 1 Fwmon 2024-02-04 5.0 MEDIUM N/A
Fwmon before 1.0.10 allows remote attackers to cause a denial of service (crash) by causing the kernel to return a large packet.
CVE-2004-1840 1 Francisco Burzi 1 Php-nuke 2024-02-04 4.3 MEDIUM N/A
Multiple cross-site scripting (XSS) vulnerabilities in MS Analysis module 2.0 for PHP-Nuke allows remote attackers to inject arbitrary web script or HTML via the (1) screen parameter to modules.php, (2) module_name parameter to title.php, (3) sortby parameter to modules.php, or (4) overview parameter to modules.php.
CVE-1999-1047 1 Bsdi 1 Gauntlet 2024-02-04 7.5 HIGH N/A
When BSDI patches for Gauntlet 5.0 BSDI are installed in a particular order, Gauntlet allows remote attackers to bypass firewall access restrictions, and does not log the activities.
CVE-2002-1222 1 Cisco 1 Catos 2024-02-04 7.1 HIGH N/A
Buffer overflow in the embedded HTTP server for Cisco Catalyst switches running CatOS 5.4 through 7.3 allows remote attackers to cause a denial of service (reset) via a long HTTP request.
CVE-2004-0382 1 Apple 1 Mac Os X 2024-02-04 7.2 HIGH N/A
Unknown vulnerability in the CUPS printing system in Mac OS X 10.3.3 and Mac OS X 10.2.8 with unknown impact, possibly related to a configuration file setting.
CVE-2001-0778 1 Omnicron 1 Omnihttpd 2024-02-04 5.0 MEDIUM N/A
OmniHTTPd 2.0.8 and earlier allow remote attackers to obtain source code via a GET request with the URL-encoded symbol for a space (%20).