Vulnerabilities (CVE)

Total 253999 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2003-1254 1 Active Php Bookmarks 1 Active Php Bookmarks 2024-02-04 5.0 MEDIUM N/A
Active PHP Bookmarks (APB) 1.1.01 allows remote attackers to execute arbitrary PHP code via (1) head.php, (2) apb_common.php, or (3) apb_view_class.php by modifying the APB_SETTINGS parameter to reference a URL on a remote web server that contains the code.
CVE-2004-0705 1 Mozilla 1 Bugzilla 2024-02-04 6.8 MEDIUM N/A
Multiple cross-site scripting (XSS) vulnerabilities in (1) editcomponents.cgi, (2) editgroups.cgi, (3) editmilestones.cgi, (4) editproducts.cgi, (5) editusers.cgi, and (6) editversions.cgi in Bugzilla 2.16.x before 2.16.6, and 2.18 before 2.18rc1, allow remote attackers to execute arbitrary JavaScript as other users via a URL parameter.
CVE-1999-0982 1 Sun 2 Solaris, Web-based Enterprise Management 2024-02-04 7.2 HIGH N/A
The Sun Web-Based Enterprise Management (WBEM) installation script stores a password in plaintext in a world readable file.
CVE-2000-0622 1 Oreilly 1 Website Professional 2024-02-04 10.0 HIGH N/A
Buffer overflow in Webfind CGI program in O'Reilly WebSite Professional web server 2.x allows remote attackers to execute arbitrary commands via a URL containing a long "keywords" parameter.
CVE-2001-1447 1 Apple 1 Mac Os X 2024-02-04 7.2 HIGH N/A
NetInfo Manager for Mac OS X 10.0 through 10.1 allows local users to gain root privileges by opening applications using the (1) "recent items" and (2) "services" menus, which causes the applications to run with root privileges.
CVE-2001-0472 1 Ibm 1 High Availability Cluster Multiprocessing 2024-02-04 5.0 MEDIUM N/A
Hursley Software Laboratories Consumer Transaction Framework (HSLCTF) HTTP object allows remote attackers to cause a denial of service (crash) via an extremely long HTTP request.
CVE-2000-1189 1 Redhat 1 Linux 2024-02-04 7.2 HIGH N/A
Buffer overflow in pam_localuser PAM module in Red Hat Linux 7.x and 6.x allows attackers to gain privileges.
CVE-2003-0441 1 Orville-write 1 Orville-write 2024-02-04 7.2 HIGH N/A
Multiple buffer overflows in Orville Write (orville-write) 2.53 and earlier allow local users to gain privileges.
CVE-2000-1206 1 Apache 1 Http Server 2024-02-04 5.0 MEDIUM N/A
Vulnerability in Apache httpd before 1.3.11, when configured for mass virtual hosting using mod_rewrite, or mod_vhost_alias in Apache 1.3.9, allows remote attackers to retrieve arbitrary files.
CVE-2002-0492 1 Dcscripts 1 Dcshop 2024-02-04 5.0 MEDIUM N/A
dcshop.cgi in DCShop 1.002 Beta allows remote attackers to delete arbitrary setup files via a null character in the database parameter.
CVE-2000-1179 1 Netopia 1 650-st Isdn Router 2024-02-04 5.0 MEDIUM N/A
Netopia ISDN Router 650-ST before 4.3.5 allows remote attackers to read system logs without authentication by directly connecting to the login screen and typing certain control characters.
CVE-2004-0033 1 Phpgedview 1 Phpgedview 2024-02-04 5.0 MEDIUM N/A
admin.php in PHPGEDVIEW 2.61 allows remote attackers to obtain sensitive information via an action parameter with a phpinfo command.
CVE-2002-0778 1 Cisco 8 Cache Engine 505, Cache Engine 550, Cache Engine 570 and 5 more 2024-02-04 7.5 HIGH N/A
The default configuration of the proxy for Cisco Cache Engine and Content Engine allows remote attackers to use HTTPS to make TCP connections to allowed IP addresses while hiding the actual source IP.
CVE-2004-0951 1 Hp 1 Ignite-ux 2024-02-04 7.5 HIGH N/A
The make_recovery command for the TFTP server in HP Ignite-UX before C.6.2.241 makes a copy of the password file in the TFTP directory tree, which allows remote attackers to obtain sensitive information.
CVE-2000-0894 1 Watchguard 1 Soho Firewall 2024-02-04 10.0 HIGH N/A
HTTP server on the WatchGuard SOHO firewall does not properly restrict access to administrative functions such as password resets or rebooting, which allows attackers to cause a denial of service or conduct unauthorized activities.
CVE-2001-0043 1 Phpgroupware 1 Phpgroupware 2024-02-04 10.0 HIGH N/A
phpGroupWare before 0.9.7 allows remote attackers to execute arbitrary PHP commands by specifying a malicious include file in the phpgw_info parameter of the phpgw.inc.php program.
CVE-2001-1456 4 Mcafee, Network Associates, Pgp and 1 more 5 Webshield Smtp, Gauntlet Firewall, Mcafee E-ppliance and 2 more 2024-02-04 7.5 HIGH N/A
Buffer overflow in the (1) smap/smapd and (2) CSMAP daemons for Gauntlet Firewall 5.0 through 6.0 allows remote attackers to execute arbitrary code via a crafted mail message.
CVE-2004-0695 1 4d 1 Webstar 2024-02-04 7.5 HIGH N/A
Stack-based buffer overflow in the FTP service for 4D WebSTAR 5.3.2 and earlier allows remote attackers to execute arbitrary code via a long FTP command.
CVE-2004-0328 1 Gigabyte 1 Gn-b46b 2024-02-04 7.2 HIGH N/A
Gigabyte Gn-B46B 2.4Ghz wireless broadband router firmware 1.003.00 allows local users on the same local network as the router to bypass authentication by using a copy of the router's html menu on a separate system.
CVE-2000-0446 1 Marty Bochane 1 Mdbms 2024-02-04 7.5 HIGH N/A
Buffer overflow in MDBMS database server allows remote attackers to execute arbitrary commands via a long string.