Vulnerabilities (CVE)

Total 247247 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2004-0415 3 Linux, Redhat, Trustix 3 Linux Kernel, Fedora Core, Secure Linux 2023-12-10 2.1 LOW N/A
Linux kernel does not properly convert 64-bit file offset pointers to 32 bits, which allows local users to access portions of kernel memory.
CVE-2002-0405 1 Transsoft 1 Broker Ftp Server 2023-12-10 10.0 HIGH N/A
Buffer overflow in Transsoft Broker FTP Server 5.0 evaluation allows remote attackers to cause a denial of service and possibly execute arbitrary code via a CWD command with a large number of . (dot) characters.
CVE-1999-1095 2 Redhat, Slackware 2 Linux, Slackware Linux 2023-12-10 7.2 HIGH N/A
sort creates temporary files and follows symbolic links, which allows local users to modify arbitrary files that are writable by the user running sort, as observed in updatedb and other programs that use sort.
CVE-2003-0246 1 Linux 1 Linux Kernel 2023-12-10 3.6 LOW N/A
The ioperm system call in Linux kernel 2.4.20 and earlier does not properly restrict privileges, which allows local users to gain read or write access to certain I/O ports.
CVE-2001-0364 1 Ssh 1 Ssh2 2023-12-10 5.0 MEDIUM N/A
SSH Communications Security sshd 2.4 for Windows allows remote attackers to create a denial of service via a large number of simultaneous connections.
CVE-2001-1376 12 Ascend, Freeradius, Gnu and 9 more 12 Radius, Freeradius, Radius and 9 more 2023-12-10 7.5 HIGH N/A
Buffer overflow in digest calculation function of multiple RADIUS implementations allows remote attackers to cause a denial of service and possibly execute arbitrary code via shared secret data.
CVE-2003-0862 2023-12-10 N/A N/A
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2003-0813. Reason: This candidate is a duplicate of CVE-2003-0813. Notes: All CVE users should reference CVE-2003-0813 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage
CVE-2004-0698 1 4d 1 Webstar 2023-12-10 3.6 LOW N/A
4D WebSTAR 5.3.2 and earlier allows local users to read and modify arbitrary files via a symlink attack.
CVE-2001-0079 1 Hp 1 Support Tools Manager 2023-12-10 2.1 LOW N/A
Support Tools Manager (STM) A.22.00 for HP-UX allows local users to overwrite arbitrary files via a symlink attack on the tool_stat.txt log file.
CVE-2002-0798 1 Hp 1 Hp-ux 2023-12-10 2.1 LOW N/A
Vulnerability in swinstall for HP-UX 11.00 and 11.11 allows local users to view obtain data views for files that cannot be directly read by the user, which reportedly can be used to cause a denial of service.
CVE-2002-0736 1 Microsoft 1 Backoffice 2023-12-10 10.0 HIGH N/A
Microsoft BackOffice 4.0 and 4.5, when configured to be accessible by other systems, allows remote attackers to bypass authentication and access the administrative ASP pages via an HTTP request with an authorization type (auth_type) that is not blank.
CVE-2000-0177 1 Dnstools Software 1 Dnstools 2023-12-10 10.0 HIGH N/A
DNSTools CGI applications allow remote attackers to execute arbitrary commands via shell metacharacters.
CVE-2002-0318 1 Freeradius 1 Freeradius 2023-12-10 5.0 MEDIUM N/A
FreeRADIUS RADIUS server allows remote attackers to cause a denial of service (CPU consumption) via a flood of Access-Request packets.
CVE-2004-1496 1 Minihttpserver.net 1 Web Forums Server 2023-12-10 5.0 MEDIUM N/A
Directory traversal vulnerability in Web Forums Server 1.6 and 2.0 Power Pack allows remote attackers to read arbitrary files via a URL containing (1) "..\" (dot dot backslash), (2) "../" (dot dot slash), (3) "/%2E%2E%5C" (encoded dot dot backslash), or (4) "%2E%2E%2F" (encoded dot dot slash).
CVE-2001-0908 1 Citrix 1 Metaframe 2023-12-10 7.5 HIGH N/A
CITRIX Metaframe 1.8 logs the Client Address (IP address) that is provided by the client instead of obtaining it from the packet headers, which allows clients to spoof their public IP address, e.g. through Network Address Translation (NAT).
CVE-2004-2051 1 Esesix 7 Thintune Extreme, Thintune L, Thintune M and 4 more 2023-12-10 5.0 MEDIUM N/A
The Phoenix browser in eSeSIX Thintune thin clients running firmware 2.4.38 and earlier allows local users to read arbitrary files via a file:/// URL.
CVE-2001-1292 1 Sambar 1 Sambar Server 2023-12-10 7.5 HIGH N/A
Sambar Telnet Proxy/Server allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long password.
CVE-2002-1219 3 Freebsd, Isc, Openbsd 3 Freebsd, Bind, Openbsd 2023-12-10 7.5 HIGH N/A
Buffer overflow in named in BIND 4 versions 4.9.10 and earlier, and 8 versions 8.3.3 and earlier, allows remote attackers to execute arbitrary code via a certain DNS server response containing SIG resource records (RR).
CVE-2002-0911 1 Caldera 1 Volution Manager 2023-12-10 7.2 HIGH N/A
Caldera Volution Manager 1.1 stores the Directory Administrator password in cleartext in the slapd.conf file, which could allow local users to gain privileges.
CVE-2001-1395 1 Linux 1 Linux Kernel 2023-12-10 3.6 LOW N/A
Unknown vulnerability in sockfilter for Linux kernel before 2.2.19 related to "boundary cases," with unknown impact.