Vulnerabilities (CVE)

Total 254308 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-1999-0819 1 Microsoft 2 Windows 2000, Windows Nt 2024-02-04 5.0 MEDIUM N/A
NTMail does not disable the VRFY command, even if the administrator has explicitly disabled it.
CVE-2001-0517 1 Oracle 1 Oracle8i 2024-02-04 5.0 MEDIUM N/A
Oracle listener in Oracle 8i on Solaris allows remote attackers to cause a denial of service via a malformed connection packet with a maximum transport data size that is set to 0.
CVE-2002-0616 1 Microsoft 2 Excel, Office 2024-02-04 5.1 MEDIUM N/A
The Macro Security Model in Microsoft Excel 2000 and 2002 for Windows allows remote attackers to execute code by attaching an inline macro to an object within an Excel workbook, aka the "Excel Inline Macros Vulnerability."
CVE-2002-2405 1 Checkpoint 1 Firewall-1 2024-02-04 4.9 MEDIUM N/A
Check Point FireWall-1 4.1 and Next Generation (NG), with UserAuth configured to proxy HTTP traffic only, allows remote attackers to pass unauthorized HTTPS, FTP and possibly other traffic through the firewall.
CVE-2002-0969 2 Microsoft, Oracle 2 Windows, Mysql 2024-02-04 4.6 MEDIUM 7.8 HIGH
Buffer overflow in MySQL daemon (mysqld) before 3.23.50, and 4.0 beta before 4.02, on the Win32 platform, allows local users to execute arbitrary code via a long "datadir" parameter in the my.ini initialization file, whose permissions on Windows allow Full Control to the Everyone group.
CVE-2002-2211 1 Isc 1 Bind 2024-02-04 5.0 MEDIUM N/A
BIND 4 and BIND 8, when resolving recursive DNS queries for arbitrary hosts, allows remote attackers to conduct DNS cache poisoning via a birthday attack that uses a large number of open queries for the same resource record (RR) combined with spoofed responses, which increases the possibility of successfully spoofing a response in a way that is more efficient than brute force methods.
CVE-2002-0651 1 Isc 1 Bind 2024-02-04 7.5 HIGH N/A
Buffer overflow in the DNS resolver code used in libc, glibc, and libbind, as derived from ISC BIND, allows remote malicious DNS servers to cause a denial of service and possibly execute arbitrary code via the stub resolvers.
CVE-2002-0820 1 Freebsd 1 Freebsd 2024-02-04 7.2 HIGH N/A
FreeBSD kernel 4.6 and earlier closes the file descriptors 0, 1, and 2 after they have already been assigned to /dev/null when the descriptors reference procfs or linprocfs, which could allow local users to reuse the file descriptors in a setuid or setgid program to modify critical data and gain privileges.
CVE-2003-0440 2 Debian, Semi 2 Debian Linux, Semi 2024-02-04 4.6 MEDIUM N/A
The (1) semi MIME library 1.14.5 and earlier, and (2) wemi 1.14.0 and possibly other versions, allows local users to overwrite arbitrary files via a symlink attack on temporary files.
CVE-1999-0219 1 Cat Soft 1 Serv-u 2024-02-04 7.8 HIGH N/A
Buffer overflow in FTP Serv-U 2.5 allows remote authenticated users to cause a denial of service (crash) via a long (1) CWD or (2) LS (list) command.
CVE-2003-1106 1 Microsoft 1 Windows 2000 2024-02-04 5.0 MEDIUM N/A
The SMTP service in Microsoft Windows 2000 before SP4 allows remote attackers to cause a denial of service (crash or hang) via an e-mail message with a malformed time stamp in the FILETIME attribute.
CVE-2002-1392 1 Gert Doering 1 Mgetty 2024-02-04 2.1 LOW N/A
faxspool in mgetty before 1.1.29 uses a world-writable spool directory for outgoing faxes, which allows local users to modify fax transmission privileges.
CVE-1999-0395 1 Backweb Technologies 1 Backweb Polite Agent Protocol 2024-02-04 5.1 MEDIUM N/A
A race condition in the BackWeb Polite Agent Protocol allows an attacker to spoof a BackWeb server.
CVE-2000-0615 1 Astart Technologies 1 Lprng 2024-02-04 2.1 LOW N/A
LPRng 3.6.x improperly installs lpd as setuid root, which can allow local users to append lpd trace and logging messages to files.
CVE-2001-1194 1 Zyxel 2 Prestige 1600, Prestige 681 2024-02-04 5.0 MEDIUM N/A
Zyxel Prestige 681 and 1600 SDSL Routers allow remote attackers to cause a denial of service via malformed packets with (1) an IP length less than actual packet size, or (2) fragmented packets whose size exceeds 64 kilobytes after reassembly.
CVE-2002-0239 1 Hanterm 1 Hanterm 2024-02-04 7.2 HIGH N/A
Buffer overflow in hanterm 3.3.1 and earlier allows local users to execute arbitrary code via a long string in the (1) -fn, (2) -hfb, or (3) -hfn argument.
CVE-2002-2187 1 Macromedia 1 Jrun 2024-02-04 5.0 MEDIUM N/A
Unknown "file disclosure" vulnerability in Macromedia JRun 3.0, 3.1, and 4.0, related to a log file or jrun.ini, with unknown impact.
CVE-2000-0345 1 Cisco 7 Ios, Router 2500, Router 2600 and 4 more 2024-02-04 2.1 LOW N/A
The on-line help system options in Cisco routers allows non-privileged users without "enabled" access to obtain sensitive information via the show command.
CVE-2000-0647 1 Texas Imperial Software 1 Wftpd 2024-02-04 5.0 MEDIUM N/A
WFTPD and WFTPD Pro 2.41 allows remote attackers to cause a denial of service by executing an MLST command before logging into the server.
CVE-1999-0130 7 Bsdi, Caldera, Eric Allman and 4 more 7 Bsd Os, Network Desktop, Sendmail and 4 more 2024-02-04 7.2 HIGH N/A
Local users can start Sendmail in daemon mode and gain root privileges.