Total
259100 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2002-0427 | 1 Christof Pohl | 1 Improved Mod Frontpage | 2024-02-04 | 10.0 HIGH | N/A |
Buffer overflows in fpexec in mod_frontpage before 1.6.1 may allow attackers to gain root privileges. | |||||
CVE-2003-0192 | 1 Apache | 1 Http Server | 2024-02-04 | 6.4 MEDIUM | N/A |
Apache 2 before 2.0.47, and certain versions of mod_ssl for Apache 1.3, do not properly handle "certain sequences of per-directory renegotiations and the SSLCipherSuite directive being used to upgrade from a weak ciphersuite to a strong one," which could cause Apache to use the weak ciphersuite. | |||||
CVE-2000-1069 | 1 Cgi-world | 2 Poll It, Poll It Pro | 2024-02-04 | 6.4 MEDIUM | N/A |
pollit.cgi in Poll It 2.01 and earlier allows remote attackers to access administrative functions without knowing the real password by specifying the same value to the entered_password and admin_password parameters. | |||||
CVE-2001-0707 | 1 Denicomp | 1 Rshd | 2024-02-04 | 5.0 MEDIUM | N/A |
Denicomp RSHD 2.18 and earlier allows a remote attacker to cause a denial of service (crash) via a long string to port 514. | |||||
CVE-2003-0951 | 1 Hp | 1 Hp-ux | 2024-02-04 | 7.5 HIGH | N/A |
Partition Manager (parmgr) in HP-UX B.11.23 does not properly validate certificates that are provided by the cimserver, which allows attackers to obtain sensitive data or gain privileges. | |||||
CVE-2001-0236 | 1 Sun | 2 Solaris, Sunos | 2024-02-04 | 10.0 HIGH | N/A |
Buffer overflow in Solaris snmpXdmid SNMP to DMI mapper daemon allows remote attackers to execute arbitrary commands via a long "indication" event. | |||||
CVE-2003-1046 | 1 Mozilla | 1 Bugzilla | 2024-02-04 | 7.5 HIGH | N/A |
describecomponents.cgi in Bugzilla 2.17.3 and 2.17.4 does not properly verify group membership when bug entry groups are used, which allows remote attackers to list component descriptions for otherwise restricted products. | |||||
CVE-2002-0032 | 1 Yahoo | 1 Messenger | 2024-02-04 | 7.5 HIGH | N/A |
Yahoo! Messenger 5,0,0,1064 and earlier allows remote attackers to execute arbitrary script as other users via the addview parameter of a ymsgr URI. | |||||
CVE-2000-0238 | 1 Symantec | 1 Norton Antivirus | 2024-02-04 | 5.0 MEDIUM | N/A |
Buffer overflow in the web server for Norton AntiVirus for Internet Email Gateways allows remote attackers to cause a denial of service via a long URL. | |||||
CVE-2003-1518 | 1 Adiscon | 1 Winsyslog | 2024-02-04 | 7.8 HIGH | N/A |
Adiscon WinSyslog 4.21 SP1 allows remote attackers to cause a denial of service (CPU consumption) via a long syslog message. | |||||
CVE-1999-1280 | 1 Hummingbird | 1 Exceed | 2024-02-04 | 7.5 HIGH | N/A |
Hummingbird Exceed 6.0.1.0 inadvertently includes a DLL that was meant for development and testing, which logs user names and passwords in cleartext in the test.log file. | |||||
CVE-2003-1003 | 1 Cisco | 2 Pix Firewall, Pix Firewall Software | 2024-02-04 | 7.8 HIGH | N/A |
Cisco PIX firewall 5.x.x, and 6.3.1 and earlier, allows remote attackers to cause a denial of service (crash and reload) via an SNMPv3 message when snmp-server is set. | |||||
CVE-2003-0180 | 1 Ibm | 1 Lotus Domino Web Server | 2024-02-04 | 5.0 MEDIUM | N/A |
Lotus Domino Web Server (nhttp.exe) before 6.0.1 allows remote attackers to cause a denial of service via an incomplete POST request, as demonstrated using the h_PageUI form. | |||||
CVE-2004-1672 | 1 Icewarp | 1 Web Mail | 2024-02-04 | 7.5 HIGH | N/A |
attachment.html in Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7 and possibly other versions allows remote attackers to view other users' attachments by specifying the username and message ID in an HTTP request. | |||||
CVE-2002-0744 | 1 Ibm | 1 Aix | 2024-02-04 | 10.0 HIGH | N/A |
namerslv in AIX 4.3.3 core dumps when called with a very long argument, possibly as a result of a buffer overflow. | |||||
CVE-2002-1727 | 1 Asksam Systems | 1 Asksam Web Publisher | 2024-02-04 | 6.8 MEDIUM | N/A |
Cross-site scripting vulnerability (XSS) in (1) as_web.exe and (2) as_web4.exe in askSam Web Publisher 1 and 4 allows remote attackers to execute arbitrary script as other users via a URL. | |||||
CVE-2003-1253 | 1 Sangwan Kim | 1 Bookmark4u | 2024-02-04 | 7.5 HIGH | N/A |
PHP remote file inclusion vulnerability in Bookmark4U 1.8.3 allows remote attackers to execute arbitrary PHP code viaa URL in the prefix parameter to (1) dbase.php, (2) config.php, or (3) common.load.php. | |||||
CVE-1999-0285 | 1 Microsoft | 1 Windows Nt | 2024-02-04 | 10.0 HIGH | N/A |
Denial of service in telnet from the Windows NT Resource Kit, by opening then immediately closing a connection. | |||||
CVE-1999-0375 | 1 Network Flight Recorder | 1 Network Flight Recorder | 2024-02-04 | 7.5 HIGH | N/A |
Buffer overflow in webd in Network Flight Recorder (NFR) 2.0.2-Research allows remote attackers to execute commands. | |||||
CVE-2004-1666 | 1 Cerulean Studios | 1 Trillian | 2024-02-04 | 7.5 HIGH | N/A |
Buffer overflow in the MSN module in Trillian 0.74i allows remote MSN servers to execute arbitrary code via a long string that ends in a newline character. |