Vulnerabilities (CVE)

Total 253946 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2004-1698 1 Leadmind 1 Popmessenger 2024-02-04 5.0 MEDIUM N/A
The Base64 function in PopMessenger 1.60 (before 20 Sep 2004) and earlier allows remote attackers to cause a denial of service (application crash) via invalid characters in a message, which causes several alert dialogs to be displayed and leads to a crash.
CVE-2000-0625 1 Netzero 1 Zeroport 2024-02-04 4.6 MEDIUM N/A
NetZero 3.0 and earlier uses weak encryption for storing a user's login information, which allows a local user to decrypt the password.
CVE-2001-1326 1 Qualcomm 1 Eudora 2024-02-04 7.5 HIGH N/A
Eudora 5.1 allows remote attackers to execute arbitrary code when the "Use Microsoft Viewer" option is enabled and the "allow executables in HTML content" option is disabled, via an HTML email with a form that is activated from an image that the attacker spoofs as a link, which causes the user to execute the form and access embedded attachments.
CVE-2004-1958 1 Epic Games 3 Unreal Engine, Unreal Tournament, Unreal Tournament 2003 2024-02-04 5.0 MEDIUM N/A
Directory traversal vulnerability in manifest.ini in Unreal engine allows remote attackers to overwrite arbitrary files via .. (dot dot) sequences in a UMOD (Unreal MOD) file.
CVE-2003-0412 1 Sun 1 One Application Server 2024-02-04 5.0 MEDIUM N/A
Sun ONE Application Server 7.0 for Windows 2000/XP does not log the complete URI of a long HTTP request, which could allow remote attackers to hide malicious activities.
CVE-2004-1557 1 Mywebserver 1 Mywebserver 2024-02-04 6.4 MEDIUM N/A
MyWebServer 1.0.3 allows remote attackers to bypass authentication, modify configuration, and read arbitrary files via a direct HTTP request to (1) /admin or (2) ServerProperties.html.
CVE-2003-1424 1 Petitforum 1 Petitforum 2024-02-04 6.8 MEDIUM N/A
message.php in Petitforum does not properly authenticate users, which allows remote attackers to impersonate forum users via a modified connect cookie.
CVE-2003-0875 1 Openslp 1 Openslp 2024-02-04 2.1 LOW N/A
Symbolic link vulnerability in the slpd script slpd.all_init for OpenSLP before 1.0.11 allows local users to overwrite arbitrary files via the route.check temporary file.
CVE-2000-0218 2 Caldera, Suse 2 Openlinux, Suse Linux 2024-02-04 7.2 HIGH N/A
Buffer overflow in Linux mount and umount allows local users to gain root privileges via a long relative pathname.
CVE-2001-0716 1 Citrix 1 Metaframe 2024-02-04 5.0 MEDIUM N/A
Citrix MetaFrame 1.8 Server with Service Pack 3, and XP Server Service Pack 1 and earlier, allows remote attackers to cause a denial of service (crash) via a large number of incomplete connections to the server.
CVE-2003-0659 1 Microsoft 4 Windows 2000, Windows 2003 Server, Windows Nt and 1 more 2024-02-04 7.2 HIGH N/A
Buffer overflow in a function in User32.dll on Windows NT through Server 2003 allows local users to execute arbitrary code via long (1) LB_DIR messages to ListBox or (2) CB_DIR messages to ComboBox controls in a privileged application.
CVE-2003-0989 1 Redhat 2 Linux, Tcpdump 2024-02-04 7.5 HIGH N/A
tcpdump before 3.8.1 allows remote attackers to cause a denial of service (infinite loop) via certain ISAKMP packets, a different vulnerability than CVE-2004-0057.
CVE-1999-1122 1 Sun 1 Sunos 2024-02-04 4.6 MEDIUM N/A
Vulnerability in restore in SunOS 4.0.3 and earlier allows local users to gain privileges.
CVE-1999-0584 2024-02-04 10.0 HIGH N/A
A Windows NT file system is not NTFS.
CVE-2000-1192 1 Btt Software 1 Snmp Trap Watcher 2024-02-04 7.5 HIGH N/A
Buffer overflow in BTT Software SNMP Trap Watcher 1.16 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string trap.
CVE-2002-1689 1 Ibm 1 Aix 2024-02-04 10.0 HIGH N/A
Unknown vulnerability in the login program on AIX before 4.0 could allow remote users to specify 100 or more environment variables when logging on, which exceeds the length of a certain string, possibly triggering a buffer overflow.
CVE-1999-1001 1 Cisco 1 Cache Engine 2024-02-04 2.6 LOW N/A
Cisco Cache Engine allows a remote attacker to gain access via a null username and password.
CVE-2003-0784 1 Ibm 1 Aix 2024-02-04 10.0 HIGH N/A
Format string vulnerability in tsm for the bos.rte.security fileset on AIX 5.2 allows remote attackers to gain root privileges via login, and local users to gain privileges via login, su, or passwd, with a username that contains format string specifiers.
CVE-2000-0895 1 Watchguard 1 Soho Firewall 2024-02-04 10.0 HIGH N/A
Buffer overflow in HTTP server on the WatchGuard SOHO firewall allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long GET request.
CVE-2001-0889 2 Redhat, University Of Cambridge 2 Linux, Exim 2024-02-04 7.5 HIGH N/A
Exim 3.22 and earlier, in some configurations, does not properly verify the local part of an address when redirecting the address to a pipe, which could allow remote attackers to execute arbitrary commands via shell metacharacters.