Vulnerabilities (CVE)

Total 92887 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2002-2211 1 Isc 1 Bind 2023-12-10 5.0 MEDIUM N/A
BIND 4 and BIND 8, when resolving recursive DNS queries for arbitrary hosts, allows remote attackers to conduct DNS cache poisoning via a birthday attack that uses a large number of open queries for the same resource record (RR) combined with spoofed responses, which increases the possibility of successfully spoofing a response in a way that is more efficient than brute force methods.
CVE-2000-0562 1 Iss 2 Blackice Agent, Blackice Defender 2023-12-10 7.5 HIGH N/A
BlackIce Defender 2.1 and earlier, and BlackIce Pro 2.0.23 and earlier, do not properly block Back Orifice traffic when the security setting is Nervous or lower.
CVE-2004-1494 1 Kingsoft 1 Xdict 2023-12-10 5.0 MEDIUM N/A
Buffer overflow in the Screen Fetch option in XDICT 2002 through 2005 allows remote attackers to cause a denial of service ( CPU consumption or application exit) and possibly execute arbitrary code via a long string.
CVE-2002-2317 1 Symantec 1 Velociraptor 2023-12-10 7.8 HIGH N/A
Memory leak in the (1) httpd, (2) nntpd, and (3) vpn driver in VelociRaptor 1.0 allows remote attackers to cause a denial of service (memory consumption) via an unknown method.
CVE-2000-0304 1 Microsoft 2 Internet Information Server, Internet Information Services 2023-12-10 5.0 MEDIUM N/A
Microsoft IIS 4.0 and 5.0 with the IISADMPWD virtual directory installed allows a remote attacker to cause a denial of service via a malformed request to the inetinfo.exe program, aka the "Undelimited .HTR Request" vulnerability.
CVE-2002-1457 1 Leszek Krupinski 1 L-forum 2023-12-10 7.5 HIGH N/A
SQL injection vulnerability in search.php for L-Forum 2.40 allows remote attackers to execute arbitrary SQL statements via the search parameter.
CVE-2003-0931 1 Sygate Technologies 1 Enforcer 2023-12-10 5.0 MEDIUM N/A
Sygate Enforcer 4.0 earlier allows remote attackers to cause a denial of service (service hang) by replaying a malformed discovery packet to UDP port 39999.
CVE-2004-0383 1 Apple 1 Mac Os X 2023-12-10 7.2 HIGH N/A
Unknown vulnerability in Mail for Mac OS X 10.3.3 and 10.2.8, with unknown impact, related to "the handling of HTML-formatted email."
CVE-2000-0965 1 Hp 1 Vvos 2023-12-10 5.0 MEDIUM N/A
The NSAPI plugins for TGA and the Java Servlet proxy in HP-UX VVOS 10.24 and 11.04 allows an attacker to cause a denial of service (high CPU utilization).
CVE-1999-0720 1 Linux 1 Linux Kernel 2023-12-10 4.6 MEDIUM N/A
The pt_chown command in Linux allows local users to modify TTY terminal devices that belong to other users.
CVE-2001-0815 1 Activestate 1 Activeperl 2023-12-10 7.5 HIGH N/A
Buffer overflow in PerlIS.dll in Activestate ActivePerl 5.6.1.629 and earlier allows remote attackers to execute arbitrary code via an HTTP request for a long filename that ends in a .pl extension.
CVE-2001-0498 1 Oracle 1 Oracle8i 2023-12-10 5.0 MEDIUM N/A
Transparent Network Substrate (TNS) over Net8 (SQLNet) in Oracle 8i 8.1.7 and earlier allows remote attackers to cause a denial of service via a malformed SQLNet connection request with a large offset in the header extension.
CVE-2001-0230 1 Freebsd 1 Freebsd 2023-12-10 4.6 MEDIUM N/A
Buffer overflow in dc20ctrl before 0.4_1 in FreeBSD, and possibly other operating systems, allows local users to gain privileges.
CVE-2004-1850 1 Fluidgames 1 The Rage 2023-12-10 5.0 MEDIUM N/A
The Rage 1.01 and earlier allows remote attackers to cause a denial of service (infinite loop) via a TCP packet with the port and IP address set to zero.
CVE-2002-2240 1 Myserver 1 Myserver 2023-12-10 5.0 MEDIUM N/A
Directory traversal vulnerability in MyServer 0.11 and 0.2 allows remote attackers to read arbitrary files via a ".." (dot dot) in an HTTP GET request.
CVE-2003-1329 1 Washington University 1 Wu-ftpd 2023-12-10 7.8 HIGH N/A
ftpd.c in wu-ftpd 2.6.2, when running on "operating systems that only allow one non-connected socket bound to the same local address," does not close failed connections, which allows remote attackers to cause a denial of service.
CVE-2004-1426 1 Korweblog 1 Korweblog 2023-12-10 5.0 MEDIUM N/A
Directory traversal vulnerability in index.php in KorWeblog 1.6.2-cvs and earlier allows remote attackers to read arbitrary files and execute arbitrary PHP files via .. (dot dot) sequences in the lng parameter.
CVE-2000-1029 1 Isc 1 Bind 2023-12-10 10.0 HIGH N/A
Buffer overflow in host command allows a remote attacker to execute arbitrary commands via a long response to an AXFR query.
CVE-2002-0922 1 Cgiscript.net 1 Csnews 2023-12-10 5.0 MEDIUM N/A
CGIScript.net csNews.cgi allows remote attackers to obtain database files via a direct URL-encoded request to (1) default%2edb or (2) default%2edb.style, or remote authenticated users to perform administrative actions via (3) a database parameter set to default%2edb.
CVE-2003-0804 3 Apple, Freebsd, Openbsd 4 Mac Os X, Mac Os X Server, Freebsd and 1 more 2023-12-10 5.0 MEDIUM N/A
The arplookup function in FreeBSD 5.1 and earlier, Mac OS X before 10.2.8, and possibly other BSD-based systems, allows remote attackers on a local subnet to cause a denial of service (resource starvation and panic) via a flood of spoofed ARP requests.