Vulnerabilities (CVE)

Total 254018 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2002-0753 1 Talentsoft 1 Web\+ Server 2024-02-04 10.0 HIGH N/A
Buffer overflow in Talentsoft Web+ 5.0 allows remote attackers to execute arbitrary code via an HTTP request with a long cookie.
CVE-2004-0493 5 Apache, Avaya, Gentoo and 2 more 8 Http Server, Converged Communications Server, S8300 and 5 more 2024-02-04 6.4 MEDIUM N/A
The ap_get_mime_headers_core function in Apache httpd 2.0.49 allows remote attackers to cause a denial of service (memory exhaustion), and possibly an integer signedness error leading to a heap-based buffer overflow on 64 bit systems, via long header lines with large numbers of space or tab characters.
CVE-2001-1224 1 Les Vanbrunt 1 Adrotate Pro 2024-02-04 7.5 HIGH N/A
get_input in adrotate.pm for Les VanBrunt AdRotate Pro 2.0 allows remote attackers to modify the database and possibly execute arbitrary commands via a SQL code injection attack.
CVE-1999-1066 1 Sgi 1 Quake 1 Server 2024-02-04 5.0 MEDIUM N/A
Quake 1 server responds to an initial UDP game connection request with a large amount of traffic, which allows remote attackers to use the server as an amplifier in a "Smurf" style attack on another host, by spoofing the connection request.
CVE-2002-1098 1 Cisco 2 Vpn 3000 Concentrator Series Software, Vpn 3002 Hardware Client 2024-02-04 7.5 HIGH N/A
Cisco VPN 3000 Concentrator 2.2.x, and 3.x before 3.5.3, adds an "HTTPS on Public Inbound (XML-Auto)(forward/in)" rule but sets the protocol to "ANY" when the XML filter configuration is enabled, which ultimately allows arbitrary traffic to pass through the concentrator.
CVE-2003-0561 1 Iglooftp 1 Iglooftp Pro 2024-02-04 7.5 HIGH N/A
Multiple buffer overflows in IglooFTP PRO 3.8 allow remote FTP servers to execute arbitrary code via (1) a long FTP banner, or long responses to the client commands (2) USER, (3) PASS, (4) ACCT, and possibly other commands.
CVE-1999-0188 1 Sun 2 Solaris, Sunos 2024-02-04 7.2 HIGH N/A
The passwd command in Solaris can be subjected to a denial of service.
CVE-2002-1025 1 Macromedia 1 Jrun 2024-02-04 5.0 MEDIUM N/A
JRun 3.0 through 4.0 allows remote attackers to read JSP source code via an encoded null byte in an HTTP GET request, which causes the server to send the .JSP file unparsed.
CVE-2001-0887 1 Oliver Rauch 1 Xsane 2024-02-04 1.2 LOW N/A
xSANE 0.81 and earlier allows local users to modify files of other xSANE users via a symlink attack on temporary files.
CVE-2000-0495 1 Microsoft 1 Windows Media Services 2024-02-04 5.0 MEDIUM N/A
Microsoft Windows Media Encoder allows remote attackers to cause a denial of service via a malformed request, aka the "Malformed Windows Media Encoder Request" vulnerability.
CVE-2000-0286 1 Redhat 1 Linux 2024-02-04 2.1 LOW N/A
X fontserver xfs allows local users to cause a denial of service via malformed input to the server.
CVE-2004-0306 1 Cisco 1 Optical Networking Systems Software 2024-02-04 5.0 MEDIUM N/A
Cisco ONS 15327 before 4.1(3), ONS 15454 before 4.6(1), ONS 15454 SD before 4.1(3), and Cisco ONS 15600 before 1.3(0) enable TFTP service on UDP port 69 by default, which allows remote attackers to GET or PUT ONS system files on the current active TCC in the /flash0 or /flash1 directories.
CVE-2001-0843 1 Squid 1 Squid Web Proxy 2024-02-04 5.0 MEDIUM N/A
Squid proxy server 2.4 and earlier allows remote attackers to cause a denial of service (crash) via a mkdir-only FTP PUT request.
CVE-2004-2034 1 Wildtangent 1 Webdriver 2024-02-04 7.5 HIGH N/A
Buffer overflow in the (1) WTHoster and (2) WebDriver modules in WildTangent Web Driver 4.0 allows remote attackers to execute arbitrary code via a long filename.
CVE-2000-0734 2 Eeye Digital Security, Spynet 2 Iris, Capturenet 2024-02-04 5.0 MEDIUM N/A
eEye IRIS 1.01 beta allows remote attackers to cause a denial of service via a large number of UDP connections.
CVE-2002-1032 1 Key Focus 1 Kf Web Server 2024-02-04 7.5 HIGH N/A
Buffer overflow in KeyFocus (KF) web server 1.0.5 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a malformed HTTP header.
CVE-1999-0588 2024-02-04 7.5 HIGH N/A
A filter in a router or firewall allows unusual fragmented packets.
CVE-2000-0722 1 Helix Code 1 Gnome Updater 2024-02-04 6.2 MEDIUM N/A
Helix GNOME Updater helix-update 0.5 and earlier allows local users to install arbitrary RPM packages by creating the /tmp/helix-install installation directory before root has begun installing packages.
CVE-2002-0283 1 Microsoft 1 Windows Xp 2024-02-04 5.0 MEDIUM N/A
Windows XP with port 445 open allows remote attackers to cause a denial of service (CPU consumption) via a flood of TCP SYN packets containing possibly malformed data.
CVE-2002-2285 1 Broadcom 1 Inoculateit 2024-02-04 4.3 MEDIUM N/A
eTrust InoculateIT 6.0 with the "Incremental Scan" option enabled may certify that a file is free of viruses before the file has been completely downloaded, which allows remote attackers to bypass virus detection.