Vulnerabilities (CVE)

Total 259038 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0072 1 Computer Power Solutions 1 Visual Casel 2024-02-04 4.6 MEDIUM N/A
Visual Casel (Vcasel) does not properly prevent users from executing files, which allows local users to use a relative pathname to specify an alternate file which has an approved name and possibly gain privileges.
CVE-2001-0779 1 Sun 2 Solaris, Sunos 2024-02-04 10.0 HIGH N/A
Buffer overflow in rpc.yppasswdd (yppasswd server) in Solaris 2.6, 7 and 8 allows remote attackers to gain root access via a long username.
CVE-2001-0411 1 Siemens 1 Reliant Unix 2024-02-04 5.0 MEDIUM N/A
Reliant Unix 5.44 and earlier allows remote attackers to cause a denial of service via an ICMP port unreachable packet, which causes Reliant to drop all connections to the source address of the packet.
CVE-1999-1258 1 Sun 1 Sunos 2024-02-04 5.0 MEDIUM N/A
rpc.pwdauthd in SunOS 4.1.1 and earlier does not properly prevent remote access to the daemon, which allows remote attackers to obtain sensitive system information.
CVE-2004-0357 1 Seattle Lab Software 1 Slmail Pro 2024-02-04 10.0 HIGH N/A
Stack-based buffer overflows in SL Mail Pro 2.0.9 allow remote attackers to execute arbitrary code via (1) user.dll, (2) loadpageadmin.dll or (3) loadpageuser.dll.
CVE-2004-2110 1 Phorum 1 Phorum 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in register.php in Phorum before 3.4.6 allows remote attackers to execute arbitrary SQL commands via the hide_email parameter.
CVE-2001-1132 1 Gnu 1 Mailman 2024-02-04 7.5 HIGH N/A
Mailman 2.0.x before 2.0.6 allows remote attackers to gain access to list administrative pages when there is an empty site or list password, which is not properly handled during the call to the crypt function during authentication.
CVE-2002-1437 1 Novell 1 Netware 2024-02-04 5.0 MEDIUM N/A
Directory traversal vulnerability in the web handler for Perl 5.003 on Novell NetWare 5.1 and NetWare 6 allows remote attackers to read arbitrary files via an HTTP request containing "..%5c" (URL-encoded dot-dot backslash) sequences.
CVE-2002-2398 1 App 1 Apboard 2024-02-04 5.0 MEDIUM N/A
The new thread posting page in APBoard 2.02 and 2.03 allows remote attackers to post messages to protected forums by modifying the insertinto parameter.
CVE-2004-0952 1 Hp 1 Hp-ux 2024-02-04 6.4 MEDIUM N/A
HP-UX B.11.00 through B.11.23, when running Ignite-UX and using the add_new_client command, causes the TFTP server to set world-writable permissions on part of the directory tree, which allows remote attackers to modify data or cause disk consumption.
CVE-2001-0388 3 Freebsd, Mandrakesoft, Suse 3 Freebsd, Mandrake Linux, Suse Linux 2024-02-04 10.0 HIGH N/A
time server daemon timed allows remote attackers to cause a denial of service via malformed packets.
CVE-2000-0422 1 Netwin 1 Dmail 2024-02-04 7.5 HIGH N/A
Buffer overflow in Netwin DMailWeb CGI program allows remote attackers to execute arbitrary commands via a long utoken parameter.
CVE-2002-2125 1 Microsoft 2 Ie, Internet Explorer 2024-02-04 6.4 MEDIUM N/A
Internet Explorer 6.0 does not warn users when an expired certificate authority (CA) certificate is submitted to the user and a newer CA certificate is in the user's local repository, which could allow remote attackers to decrypt web sessions via a man-in-the-middle (MITM) attack.
CVE-2002-0370 5 Allume Systems Division, Ibm, Microsoft and 2 more 7 Stuffit Expander, Lotus Notes, Windows 98 Plus Pack and 4 more 2024-02-04 7.5 HIGH N/A
Buffer overflow in the ZIP capability for multiple products allows remote attackers to cause a denial of service or execute arbitrary code via ZIP files containing entries with long filenames, including (1) Microsoft Windows 98 with Plus! Pack, (2) Windows XP, (3) Windows ME, (4) Lotus Notes R4 through R6 (pre-gold), (5) Verity KeyView, and (6) Stuffit Expander before 7.0.
CVE-2003-0681 8 Apple, Gentoo, Hp and 5 more 14 Mac Os X, Mac Os X Server, Linux and 11 more 2024-02-04 7.5 HIGH N/A
A "potential buffer overflow in ruleset parsing" for Sendmail 8.12.9, when using the nonstandard rulesets (1) recipient (2), final, or (3) mailer-specific envelope recipients, has unknown consequences.
CVE-1999-0678 2 Apache, Debian 2 Http Server, Debian Linux 2024-02-04 5.0 MEDIUM N/A
A default configuration of Apache on Debian GNU/Linux sets the ServerRoot to /usr/doc, which allows remote users to read documentation files for the entire server.
CVE-2003-0833 1 Webfs 1 Webfs 2024-02-04 7.5 HIGH N/A
Stack-based buffer overflow in webfs before 1.20 allows attackers to execute arbitrary code by creating directories that result in a long pathname.
CVE-1999-0296 1 Sun 2 Solaris, Sunos 2024-02-04 7.2 HIGH N/A
Solaris volrmmount program allows attackers to read any file.
CVE-2001-1012 1 Suse 1 Suse Linux 2024-02-04 7.2 HIGH N/A
Vulnerability in screen before 3.9.10, related to a multi-attach error, allows local users to gain root privileges when there is a subdirectory under /tmp/screens/.
CVE-2000-1093 1 Aol 1 Instant Messenger 2024-02-04 7.5 HIGH N/A
Buffer overflow in AOL Instant Messenger before 4.3.2229 allows remote attackers to execute arbitrary commands via a long "goim" command.