Total
259026 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2004-0733 | 1 Ollydbg | 1 Ollydbg | 2024-02-04 | 7.5 HIGH | N/A |
Format string vulnerability in OllyDbg 1.10 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers that are directly provided to the OutputDebugString function call. | |||||
CVE-2000-0539 | 1 Macromedia | 1 Jrun | 2024-02-04 | 6.4 MEDIUM | N/A |
Servlet examples in Allaire JRun 2.3.x allow remote attackers to obtain sensitive information, e.g. listing HttpSession ID's via the SessionServlet servlet. | |||||
CVE-2001-0582 | 1 Ben Spink | 1 Crushftp Ftp Server | 2024-02-04 | 4.6 MEDIUM | N/A |
Ben Spink CrushFTP FTP Server 2.1.6 and earlier allows a local attacker to access arbitrary files via a '..' (dot dot) attack, or variations, in (1) GET, (2) CD, (3) NLST, (4) SIZE, (5) RETR. | |||||
CVE-2001-0833 | 1 Oracle | 1 Database Server | 2024-02-04 | 7.2 HIGH | N/A |
Buffer overflow in otrcrep in Oracle 8.0.x through 9.0.1 allows local users to execute arbitrary code via a long ORACLE_HOME environment variable, aka the "Oracle Trace Collection Security Vulnerability." | |||||
CVE-2004-0564 | 2 Debian, Roaring Penguin | 2 Debian Linux, Pppoe | 2024-02-04 | 2.1 LOW | N/A |
Roaring Penguin pppoe (rp-ppoe), if installed or configured to run setuid root contrary to its design, allows local users to overwrite arbitrary files. NOTE: the developer has publicly disputed the claim that this is a vulnerability because pppoe "is NOT designed to run setuid-root." Therefore this identifier applies *only* to those configurations and installations under which pppoe is run setuid root despite the developer's warnings. | |||||
CVE-2004-1918 | 1 Rsniff | 1 Rsniff | 2024-02-04 | 5.0 MEDIUM | N/A |
RSniff 1.0 allows remote attackers to cause a denial of service (connection exhaustion) via a large number of connections with a command other than AUTHENTICATE, or without any data, which prevents the socket from being closed properly. | |||||
CVE-1999-0267 | 1 Ncsa | 1 Ncsa Httpd | 2024-02-04 | 7.5 HIGH | N/A |
Buffer overflow in NCSA HTTP daemon v1.3 allows remote command execution. | |||||
CVE-1999-0663 | 2024-02-04 | 10.0 HIGH | N/A | ||
A system-critical program, library, or file has a checksum or other integrity measurement that indicates that it has been modified. | |||||
CVE-1999-0246 | 1 Hp | 1 Hp-ux | 2024-02-04 | 10.0 HIGH | N/A |
HP Remote Watch allows a remote user to gain root access. | |||||
CVE-2000-0021 | 1 Lotus | 1 Domino Server | 2024-02-04 | 5.0 MEDIUM | N/A |
Lotus Domino HTTP server allows remote attackers to determine the real path of the server via a request to a non-existent script in /cgi-bin. | |||||
CVE-2001-0046 | 1 Microsoft | 2 Windows 2000, Windows Nt | 2024-02-04 | 4.6 MEDIUM | N/A |
The default permissions for the SNMP Parameters registry key in Windows NT 4.0 allows remote attackers to read and possibly modify the SNMP community strings to obtain sensitive information or modify network configuration, aka one of the "Registry Permissions" vulnerabilities. | |||||
CVE-1999-1366 | 1 David Harris | 1 Pegasus Mail | 2024-02-04 | 3.6 LOW | N/A |
Pegasus e-mail client 3.0 and earlier uses weak encryption to store POP3 passwords in the pmail.ini file, which allows local users to easily decrypt the passwords and read e-mail. | |||||
CVE-1999-0855 | 1 Freebsd | 1 Freebsd | 2024-02-04 | 7.2 HIGH | N/A |
Buffer overflow in FreeBSD gdc program. | |||||
CVE-2002-2098 | 1 Axspawn | 1 Axspawn | 2024-02-04 | 7.5 HIGH | N/A |
Buffer overflow in axspawn.c in Axspawn-pam before 0.2.1a allows remote attackers to execute arbitrary code via large packets. | |||||
CVE-2002-2198 | 1 Zmailer | 1 Zmailer | 2024-02-04 | 10.0 HIGH | N/A |
Buffer overflow in ZMailer before 2.99.51_1 allows remote attackers to execute arbitrary code during HELO processing from an IPv6 address, possibly using an address that resolves to a long hostname. | |||||
CVE-2004-0650 | 1 Newatlanta | 1 Servletexec | 2024-02-04 | 10.0 HIGH | N/A |
UploadServlet in Cisco Collaboration Server (CCS) running ServletExec before 3.0E allows remote attackers to upload and execute arbitrary files via a direct call to the UploadServlet URL. | |||||
CVE-2003-0652 | 1 Xtokkaetama | 1 Xtokkaetama | 2024-02-04 | 4.6 MEDIUM | N/A |
Buffer overflow in xtokkaetama allows local users to gain privileges via a long -nickname command line argument, a different vulnerability than CVE-2003-0611. | |||||
CVE-2001-0662 | 1 Microsoft | 1 Windows Nt | 2024-02-04 | 5.0 MEDIUM | N/A |
RPC endpoint mapper in Windows NT 4.0 allows remote attackers to cause a denial of service (loss of RPC services) via a malformed request. | |||||
CVE-2003-1002 | 1 Cisco | 9 Catalyst 6500, Catalyst 6500 Ws-svc-nam-1, Catalyst 6500 Ws-svc-nam-2 and 6 more | 2024-02-04 | 5.0 MEDIUM | N/A |
Cisco Firewall Services Module (FWSM) in Cisco Catalyst 6500 and 7600 series devices allows remote attackers to cause a denial of service (crash and reload) via an SNMPv3 message when snmp-server is set. | |||||
CVE-2002-1652 | 1 Mit | 1 Cgiemail | 2024-02-04 | 7.5 HIGH | N/A |
Buffer overflow in cgicso.c for cgiemail 1.6 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long query parameter. |