Vulnerabilities (CVE)

Total 256711 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2002-1942 1 Imatix 1 Xitami 2024-02-04 5.0 MEDIUM N/A
Imatix Xitami 2.5 b5 does not properly terminate certain Keep-Alive connections that have been broken or closed early, which allows remote attackers to cause a denial of service (crash) via a large number of concurrent sessions.
CVE-2003-0597 1 Sco 1 Openserver 2024-02-04 7.2 HIGH N/A
Unknown vulnerability in display of Merge before 5.3.23a in UnixWare 7.1.x allows local users to gain root privileges.
CVE-2002-0647 1 Microsoft 1 Internet Explorer 2024-02-04 7.5 HIGH N/A
Buffer overflow in a legacy ActiveX control used to display specially formatted text in Microsoft Internet Explorer 5.01, 5.5, and 6.0 allows remote attackers to execute arbitrary code, aka "Buffer Overrun in Legacy Text Formatting ActiveX Control".
CVE-1999-1349 1 Xlink Technology 1 Omni-nfs X Enterprise 2024-02-04 5.0 MEDIUM N/A
NFS daemon (nfsd.exe) for Omni-NFS/X 6.1 allows remote attackers to cause a denial of service (resource exhaustion) via certain packets, possibly with the Urgent (URG) flag set, to port 111.
CVE-2001-0981 1 Hp 1 Cifs-9000 Server 2024-02-04 10.0 HIGH N/A
HP CIFS/9000 Server (SAMBA) A.01.07 and earlier with the "unix password sync" option enabled calls the passwd program without specifying the username of the user making the request, which could cause the server to change the password of a different user.
CVE-2002-1871 1 Sun 2 Solaris, Sunos 2024-02-04 7.2 HIGH N/A
pkgadd in Sun Solaris 2.5.1 through 8 installs files setuid/setgid root if the pkgmap file contains a "?" (question mark) in the (1) mode, (2) owner, or (3) group fields, which allows attackers to elevate privileges.
CVE-2002-1403 1 Phystech 1 Dhcpcd 2024-02-04 7.2 HIGH N/A
dhcpcd DHCP client daemon 1.3.22 and earlier allows local users to execute arbitrary code via shell metacharacters that are fed from a dhcpd .info script into a .exe script.
CVE-2000-0587 1 Glftpd 1 Glftpd 2024-02-04 10.0 HIGH N/A
The privpath directive in glftpd 1.18 allows remote attackers to bypass access restrictions for directories by using the file name completion capability.
CVE-1999-1148 1 Microsoft 1 Internet Information Server 2024-02-04 5.0 MEDIUM N/A
FTP service in IIS 4.0 and earlier allows remote attackers to cause a denial of service (resource exhaustion) via many passive (PASV) connections at the same time.
CVE-2002-2226 1 Tftpd32 1 Tftpd32 2024-02-04 7.5 HIGH N/A
Buffer overflow in tftpd of TFTP32 2.21 and earlier allows remote attackers to execute arbitrary code via a long filename argument.
CVE-1999-1030 1 Behold Software 1 Web Page Counter 2024-02-04 5.0 MEDIUM N/A
counter.exe 2.70 allows a remote attacker to cause a denial of service (hang) via an HTTP request that ends in %0A (newline), which causes a malformed entry in the counter log that produces an access violation.
CVE-2004-0474 1 Microsoft 1 Windows Xp 2024-02-04 5.1 MEDIUM N/A
Help Center (HelpCtr.exe) may allow remote attackers to read or execute arbitrary files via an "http://" or "file://" argument to the topic parameter in an hcp:// URL. NOTE: since the initial report of this problem, several researchers have been unable to reproduce this issue.
CVE-2000-0689 1 Cgi Script Center 1 Account Manager 2024-02-04 7.5 HIGH N/A
Account Manager LITE does not properly authenticate attempts to change the administrator password, which allows remote attackers to gain privileges for the Account Manager by directly calling the amadmin.pl script with the setpasswd parameter.
CVE-2001-0912 1 Mandrakesoft 1 Mandrake Linux 2024-02-04 7.2 HIGH N/A
Packaging error for expect 8.3.3 in Mandrake Linux 8.1 causes expect to search for its libraries in the /home/snailtalk directory before other directories, which could allow a local user to gain root privileges.
CVE-2004-0338 1 Invision Power Services 1 Invision Board 2024-02-04 10.0 HIGH N/A
SQL injection vulnerability in search.php for Invision Board Forum allows remote attackers to execute arbitrary SQL queries via the st parameter.
CVE-2001-0428 1 Cisco 1 Vpn 3000 Concentrator Series Software 2024-02-04 5.0 MEDIUM N/A
Cisco VPN 3000 series concentrators before 2.5.2(F) allow remote attackers to cause a denial of service via an IP packet with an invalid IP option.
CVE-1999-1551 1 Ipswitch 1 Imail 2024-02-04 5.0 MEDIUM N/A
Buffer overflow in Ipswitch IMail Service 5.0 allows an attacker to cause a denial of service (crash) and possibly execute arbitrary commands via a long URL.
CVE-2004-0774 1 Realnetworks 2 Helix Universal Mobile Server And Gateway, Helix Universal Server 2024-02-04 7.8 HIGH N/A
RealNetworks Helix Universal Server 9.0.2 for Linux and 9.0.3 for Windows allows remote attackers to cause a denial of service (CPU and memory exhaustion) via a POST request with a Content-Length header set to -1.
CVE-2004-1387 1 Apache 1 Http Server 2024-02-04 2.1 LOW N/A
The check_forensic script in apache-utils package 1.3.31 allows local users to overwrite or create arbitrary files via a symlink attack on temporary files.
CVE-2004-0611 1 Netgear 1 Fvs318 2024-02-04 5.0 MEDIUM N/A
Web-Based Administration in Netgear FVS318 VPN Router allows remote attackers to cause a denial of service (no new connections) via a large number of open HTTP connections.