Vulnerabilities (CVE)

Total 91551 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2001-0693 1 Webtrends 2 Webtrends Enterprise Reporting Server, Webtrends Enterprise Reporting Server Nt 2023-12-10 5.0 MEDIUM N/A
WebTrends HTTP Server 3.1c and 3.5 allows a remote attacker to view script source code via a filename followed by an encoded space (%20).
CVE-2004-1916 1 Lcdproc 1 Lcdproc 2023-12-10 7.5 HIGH N/A
Multiple buffer overflows in LCDProc 0.4.1, and possibly other 0.4.x versions up to 0.4.4, allows remote attackers to execute arbitrary code via (1) a long invalid command to parse_all_client_messages function, or (2) long argv command to test_func_func function.
CVE-1999-0260 1 Renaud Deraison 1 Jj 2023-12-10 7.5 HIGH N/A
The jj CGI program allows command execution via shell metacharacters.
CVE-2000-0212 1 Pragma Systems 1 Interaccess Telnetd Server 2023-12-10 5.0 MEDIUM N/A
InterAccess TelnetD Server 4.0 allows remote attackers to conduct a denial of service via malformed terminal client configuration information.
CVE-2004-1665 1 Psnews 1 Psnews 2023-12-10 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in index.php in PsNews 1.1 allows remote attackers to inject arbitrary web script or HTML via the no parameter.
CVE-2004-0796 1 Spamassassin 1 Spamassassin 2023-12-10 5.0 MEDIUM N/A
SpamAssassin 2.5x, and 2.6x before 2.64, allows remote attackers to cause a denial of service via certain malformed messages.
CVE-2001-0143 2 Immunix, Redhat 2 Immunix, Linux 2023-12-10 1.2 LOW N/A
vpop3d program in linuxconf 1.23r and earlier allows local users to overwrite arbitrary files via a symlink attack.
CVE-2000-0286 1 Redhat 1 Linux 2023-12-10 2.1 LOW N/A
X fontserver xfs allows local users to cause a denial of service via malformed input to the server.
CVE-2001-1364 1 Project Purple 1 Autodns 2023-12-10 7.5 HIGH N/A
Vulnerability in autodns.pl for AutoDNS before 0.0.4 related to domain names that are not fully qualified.
CVE-2002-1613 1 Hp 2 Hp-ux, Tru64 2023-12-10 7.2 HIGH N/A
Buffer overflow in ps in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows local users to gain privileges.
CVE-2004-2229 1 Oracle 1 Database Server Lite 2023-12-10 4.6 MEDIUM N/A
Multiple unknown vulnerabilities in Oracle 9i Lite Mobile Server 5.0.0.0.0 through 5.0.2.9.0 allow remote authenticated users to gain privileges.
CVE-2001-0040 1 Apc 1 Apcupsd 2023-12-10 2.1 LOW N/A
APC UPS daemon, apcupsd, saves its process ID in a world-writable file, which allows local users to kill an arbitrary process by specifying the target process ID in the apcupsd.pid file.
CVE-2004-0814 2 Linux, Ubuntu 2 Linux Kernel, Ubuntu Linux 2023-12-10 1.2 LOW N/A
Multiple race conditions in the terminal layer in Linux 2.4.x, and 2.6.x before 2.6.9, allow (1) local users to obtain portions of kernel data via a TIOCSETD ioctl call to a terminal interface that is being accessed by another thread, or (2) remote attackers to cause a denial of service (panic) by switching from console to PPP line discipline, then quickly sending data that is received during the switch.
CVE-2003-0409 1 Brs 1 Webweaver 2023-12-10 10.0 HIGH N/A
Buffer overflow in BRS WebWeaver 1.04 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP (1) POST or (2) HEAD request.
CVE-2003-0786 1 Openbsd 1 Openssh 2023-12-10 10.0 HIGH N/A
The SSH1 PAM challenge response authentication in OpenSSH 3.7.1 and 3.7.1p1, when Privilege Separation is disabled, does not check the result of the authentication attempt, which can allow remote attackers to gain privileges.
CVE-2001-0765 1 Bisonware 1 Bison Ftp Server 2023-12-10 4.6 MEDIUM N/A
BisonFTP V4R1 allows local users to access directories outside of their home directory by uploading .bdl files, which can then be linked to other directories.
CVE-2001-1449 2 Apache, Mandrakesoft 4 Http Server, Mandrake Linux, Mandrake Linux Corporate Server and 1 more 2023-12-10 7.5 HIGH N/A
The default installation of Apache before 1.3.19 on Mandrake Linux 7.1 through 8.0 and Linux Corporate Server 1.0.1 allows remote attackers to list the directory index of arbitrary web directories.
CVE-2002-1836 1 Xerox 2 Docutech 6110, Docutech 6115 2023-12-10 5.0 MEDIUM N/A
The default configuration of Xerox DocuTech 6110 and DocuTech 6115 exports certain NFS shares to the world with world writable permissions, which may allow remote attackers to modify sensitive files.
CVE-2003-0940 1 Sap 1 Sap Db 2023-12-10 5.0 MEDIUM N/A
Directory traversal vulnerability in sqlfopenc for web-tools in SAP DB before 7.4.03.30 allows remote attackers to read arbitrary files via .. (dot dot) sequences in a URL.
CVE-2001-1349 1 Sendmail 1 Sendmail 2023-12-10 3.7 LOW N/A
Sendmail before 8.11.4, and 8.12.0 before 8.12.0.Beta10, allows local users to cause a denial of service and possibly corrupt the heap and gain privileges via race conditions in signal handlers.