Vulnerabilities (CVE)

Total 258813 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0295 1 Lcdproc 1 Lcdproc 2024-02-04 10.0 HIGH N/A
Buffer overflow in LCDproc allows remote attackers to gain root privileges via the screen_add command.
CVE-1999-1298 1 Freebsd 1 Freebsd 2024-02-04 7.5 HIGH N/A
Sysinstall in FreeBSD 2.2.1 and earlier, when configuring anonymous FTP, creates the ftp user without a password and with /bin/date as the shell, which could allow attackers to gain access to certain system resources.
CVE-2002-1578 1 Sap 1 Sap R 3 2024-02-04 7.5 HIGH N/A
The default installation of SAP R/3, when using Oracle and SQL*net V2 3.x, 4.x, and 6.10, allows remote attackers to obtain arbitrary, sensitive SAP data by directly connecting to the Oracle database and executing queries against the database, which is not password-protected.
CVE-2001-0849 1 Duncan Hall 1 Viralator 2024-02-04 7.5 HIGH N/A
viralator CGI script in Viralator 0.9pre1 and earlier allows remote attackers to execute arbitrary code via a URL for a file being downloaded, which is insecurely passed to a call to wget.
CVE-1999-1516 1 Tenfour 1 Tfs Gateway Smtp 2024-02-04 7.5 HIGH N/A
A buffer overflow in TenFour TFS Gateway SMTP mail server 3.2 allows an attacker to crash the mail server and possibly execute arbitrary code by offering more than 128 bytes in a MAIL FROM string.
CVE-1999-1186 3 Redhat, Rxvt, Slackware 3 Linux, Rxvt, Slackware Linux 2024-02-04 7.2 HIGH N/A
rxvt, when compiled with the PRINT_PIPE option in various Linux operating systems including Linux Slackware 3.0 and RedHat 2.1, allows local users to gain root privileges by specifying a malicious program using the -print-pipe command line parameter.
CVE-1999-1013 1 Ibm 1 Aix 2024-02-04 7.2 HIGH N/A
named-xfer in AIX 4.1.5 and 4.2.1 allows members of the system group to overwrite system files to gain root access via the -f parameter and a malformed zone file.
CVE-2002-1972 1 Sebastian Dehne 1 Pp Powerswitch 2024-02-04 4.6 MEDIUM N/A
Unknown vulnerability in Parallel port powerSwitch (aka pp_powerSwitch) 0.1 does not properly enforce access controls, which allows local users to access arbitrary ports.
CVE-2000-0053 1 Microsoft 1 Commercial Internet System 2024-02-04 7.5 HIGH N/A
Microsoft Commercial Internet System (MCIS) IMAP server allows remote attackers to cause a denial of service via a malformed IMAP request.
CVE-1999-0812 1 Samba 1 Samba 2024-02-04 7.6 HIGH N/A
Race condition in Samba smbmnt allows local users to mount file systems in arbitrary locations.
CVE-2003-1072 1 Sun 2 Solaris, Sunos 2024-02-04 2.1 LOW N/A
Memory leak in lofiadm in Solaris 8 allows local users to cause a denial of service (kernel memory consumption).
CVE-1999-0076 1 Washington University 1 Wu-ftpd 2024-02-04 5.0 MEDIUM N/A
Buffer overflow in wu-ftp from PASV command causes a core dump.
CVE-2004-2206 1 Natterchat 1 Natterchat 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in NatterChat 1.12 allows remote attackers to execute arbitrary SQL commands via unknown vectors.
CVE-2004-0476 1 3com 1 3cp4144 2024-02-04 5.0 MEDIUM N/A
Buffer overflow in 3Com OfficeConnect Remote 812 ADSL Router 1.1.9.4 allows remote attackers to cause a denial of service (reboot or packet loss) via a long string containing Telnet escape characters to the Telnet port.
CVE-2000-0388 1 Freebsd 1 Freebsd 2024-02-04 7.5 HIGH N/A
Buffer overflow in FreeBSD libmytinfo library allows local users to execute commands via a long TERMCAP environmental variable.
CVE-2001-0264 1 Gene6 1 G6 Ftp Server 2024-02-04 5.0 MEDIUM N/A
Gene6 G6 FTP Server 2.0 (aka BPFTP Server 2.10) allows remote attackers to obtain NETBIOS credentials by requesting information on a file that is in a network share, which causes the server to send the credentials to the host that owns the share, and allows the attacker to sniff the connection.
CVE-2004-1377 2 Gnu, Turbolinux 4 A2ps, Turbolinux Home, Turbolinux Server and 1 more 2024-02-04 2.1 LOW N/A
The (1) fixps (aka fixps.in) and (2) psmandup (aka psmandup.in) scripts in a2ps before 4.13 allow local users to overwrite arbitrary files via a symlink attack on temporary files.
CVE-1999-0418 2024-02-04 6.4 MEDIUM N/A
Denial of service in SMTP applications such as Sendmail, when a remote attacker (e.g. spammer) uses many "RCPT TO" commands in the same connection.
CVE-2001-0678 1 Trend Micro 2 Interscan Viruswall, Interscan Webmanager 2024-02-04 4.6 MEDIUM N/A
A buffer overflow in reggo.dll file used by Trend Micro InterScan VirusWall prior to 3.51 build 1349 for Windows NT 3.5 and InterScan WebManager 1.2 allows a local attacker to execute arbitrary code.
CVE-1999-0659 2024-02-04 N/A N/A
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE). Notes: the former description is: "A Windows NT Primary Domain Controller (PDC) or Backup Domain Controller (BDC) is present."