Vulnerabilities (CVE)

Total 250911 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0322 1 Redhat 1 Linux 2023-12-10 10.0 HIGH N/A
The passwd.php3 CGI script in the Red Hat Piranha Virtual Server Package allows local users to execute arbitrary commands via shell metacharacters.
CVE-2002-0683 1 Pacific Software 1 Carello 2023-12-10 7.5 HIGH N/A
Directory traversal vulnerability in Carello 1.3 allows remote attackers to execute programs on the server via a .. (dot dot) in the VBEXE parameter.
CVE-1999-0774 1 Martin Stover 1 Mars Nwe 2023-12-10 7.2 HIGH N/A
Buffer overflows in Mars NetWare Emulation (NWE, mars_nwe) package via long directory names.
CVE-1999-0121 2023-12-10 7.2 HIGH N/A
Buffer overflow in dtaction command gives root access.
CVE-2000-0911 1 Horde 1 Imp 2023-12-10 5.0 MEDIUM N/A
IMP 2.2 and earlier allows attackers to read and delete arbitrary files by modifying the attachment_name hidden form variable, which causes IMP to send the file to the attacker as an attachment.
CVE-2000-1191 1 Htdig Project 1 Htdig 2023-12-10 5.0 MEDIUM N/A
htsearch program in htDig 3.2 beta, 3.1.6, 3.1.5, and earlier allows remote attackers to determine the physical path of the server by requesting a non-existent configuration file using the config parameter, which generates an error message that includes the full path.
CVE-2004-0014 1 Nd 1 Nd 2023-12-10 7.5 HIGH N/A
Multiple buffer overflows in the nd WebDAV interface 0.8.2 and earlier allows remote web servers to execute arbitrary code via certain long strings.
CVE-1999-0377 1 Unix 1 Unix 2023-12-10 5.0 MEDIUM N/A
Process table attack in Unix systems allows a remote attacker to perform a denial of service by filling a machine's process tables through multiple connections to network services.
CVE-1999-0428 1 Openssl 1 Openssl 2023-12-10 7.5 HIGH N/A
OpenSSL and SSLeay allow remote attackers to reuse SSL sessions and bypass access controls.
CVE-2004-1869 1 Nival Interactive 2 Etherlords, Etherlords Ii 2023-12-10 5.0 MEDIUM N/A
Etherlords I 1.07 and earlier and Etherlords II 1.03 and earlier allows remote attackers to cause a denial of service (crash) by sending a packet that specifies the size for the next packet, then sending a larger packet than specified, which causes Etherlords to read unallocated memory.
CVE-2000-0601 1 Leafdigital 1 Leafchat 2023-12-10 5.0 MEDIUM N/A
LeafChat 1.7 IRC client allows a remote IRC server to cause a denial of service by rapidly sending a large amount of error messages.
CVE-2002-1166 1 John Franks 1 Wn Server 2023-12-10 7.5 HIGH N/A
Buffer overflow in John Franks WN Server 1.18.2 through 2.0.0 allows remote attackers to execute arbitrary code via a long GET request.
CVE-2002-1428 1 Dotproject 1 Dotproject 2023-12-10 10.0 HIGH N/A
index.php in dotProject 0.2.1.5 allows remote attackers to bypass authentication via a cookie or URL with the user_cookie parameter set to 1.
CVE-1999-0441 1 Qbik 1 Wingate 2023-12-10 5.0 MEDIUM N/A
Remote attackers can perform a denial of service in WinGate machines using a buffer overflow in the Winsock Redirector Service.
CVE-2004-2135 1 Linux 1 Linux Kernel 2023-12-10 2.1 LOW N/A
cryptoloop on Linux kernel 2.6.x, when used on certain file systems with a block size 1024 or greater, has certain "IV computation" weaknesses that allow watermarked files to be detected without decryption.
CVE-2002-0373 1 Microsoft 1 Windows Media Player 2023-12-10 7.2 HIGH N/A
The Windows Media Device Manager (WMDM) Service in Microsoft Windows Media Player 7.1 on Windows 2000 systems allows local users to obtain LocalSystem rights via a program that calls the WMDM service to connect to an invalid local storage device, aka "Privilege Elevation through Windows Media Device Manager Service".
CVE-2002-0674 1 Pingtel 1 Xpressa 2023-12-10 7.2 HIGH N/A
Pingtel xpressa SIP-based voice-over-IP phone 1.2.5 through 1.2.7.4 does not "time out" an inactive administrator session, which could allow other users to perform administrator actions if the administrator does not explicitly end the authentication.
CVE-2001-0606 2 Hp, Sun 2 Virtualvault, Iplanet Web Server 2023-12-10 5.0 MEDIUM N/A
Vulnerability in iPlanet Web Server 4.X in HP-UX 11.04 (VVOS) with VirtualVault A.04.00 allows a remote attacker to create a denial of service via the HTTPS service.
CVE-1999-1218 1 Commodore 1 Amiga Unix 2023-12-10 2.1 LOW N/A
Vulnerability in finger in Commodore Amiga UNIX 2.1p2a and earlier allows local users to read arbitrary files.
CVE-1999-1381 1 Dbadmin 1 Dbadmin 2023-12-10 7.5 HIGH N/A
Buffer overflow in dbadmin CGI program 1.0.1 on Linux allows remote attackers to execute arbitrary commands.