Vulnerabilities (CVE)

Total 250741 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2001-0846 1 Lotus 1 Domino 2023-12-10 10.0 HIGH N/A
Lotus Domino 5.x allows remote attackers to read files or execute arbitrary code by requesting the ReplicaID of the Web Administrator template file (webadmin.ntf).
CVE-2000-0625 1 Netzero 1 Zeroport 2023-12-10 4.6 MEDIUM N/A
NetZero 3.0 and earlier uses weak encryption for storing a user's login information, which allows a local user to decrypt the password.
CVE-2003-0807 1 Microsoft 4 Windows 2000, Windows 2003 Server, Windows Nt and 1 more 2023-12-10 5.0 MEDIUM N/A
Buffer overflow in the COM Internet Services and in the RPC over HTTP Proxy components for Microsoft Windows NT Server 4.0, NT 4.0 Terminal Server Edition, 2000, XP, and Server 2003 allows remote attackers to cause a denial of service via a crafted request.
CVE-1999-1085 1 Ssh 1 Secure Shell 2023-12-10 5.0 MEDIUM N/A
SSH 1.2.25, 1.2.23, and other versions, when used in in CBC (Cipher Block Chaining) or CFB (Cipher Feedback 64 bits) modes, allows remote attackers to insert arbitrary data into an existing stream between an SSH client and server by using a known plaintext attack and computing a valid CRC-32 checksum for the packet, aka the "SSH insertion attack."
CVE-2003-1524 1 Pgpi 1 Pgpdisk 2023-12-10 6.3 MEDIUM N/A
PGPi PGPDisk 6.0.2i does not unmount a PGP partition when the switch user function in Windows XP is used, which could allow local users to access data on another user's PGP partition.
CVE-2002-1612 1 Hp 2 Hp-ux, Tru64 2023-12-10 7.2 HIGH N/A
Buffer overflow in mailcv in HP Tru64 UNIX 5.1a, 5.1, 5.0a, 4.0g, and 4.0f allows local users to gain privileges.
CVE-1999-0215 1 Sgi 1 Irix 2023-12-10 6.4 MEDIUM N/A
Routed allows attackers to append data to files.
CVE-2004-0133 1 Linux 1 Linux Kernel 2023-12-10 2.1 LOW N/A
The XFS file system code in Linux 2.4.x has an information leak in which in-memory data is written to the device for the XFS file system, which allows local users to obtain sensitive information by reading the raw device.
CVE-2002-1637 1 Oracle 1 Application Server 2023-12-10 4.6 MEDIUM N/A
Multiple components in Oracle 9i Application Server (9iAS) are installed with over 160 default usernames and passwords, including (1) SYS, (2) SYSTEM, (3) AQJAVA, (4) OWA, (5) IMAGEUSER, (6) USER1, (7) USER2, (8) PLSQL, (9) DEMO, (10) FINANCE, and many others, which allows attackers to gain privileges.
CVE-2004-2035 1 Minishare 1 Minimal Http Server 2023-12-10 5.0 MEDIUM N/A
MiniShare 1.3.2 allows remote attackers to cause a denial of service (crash) via a malformed HTTP GET or HEAD request without the proper number of trailing CRLF sequences.
CVE-2001-0800 1 Sgi 1 Irix 2023-12-10 10.0 HIGH N/A
lpsched in IRIX 6.5.13f and earlier allows remote attackers to execute arbitrary commands via shell metacharacters.
CVE-2000-1200 1 Microsoft 1 Windows Nt 2023-12-10 5.0 MEDIUM N/A
Windows NT allows remote attackers to list all users in a domain by obtaining the domain SID with the LsaQueryInformationPolicy policy function via a null session and using the SID to list the users.
CVE-2002-0765 1 Openbsd 2 Openbsd, Openssh 2023-12-10 7.5 HIGH N/A
sshd in OpenSSH 3.2.2, when using YP with netgroups and under certain conditions, may allow users to successfully authenticate and log in with another user's password.
CVE-2002-2138 1 Hp 2 Advanced Server 9000, Hp-ux 2023-12-10 5.0 MEDIUM N/A
RFC-NETBIOS in HP Advanced Server/9000 B.04.05 through B.04.09, when running HP-UX 11.00 or 11.11, allows remote attackers to cause a denial of service (panic) via a malformed UDP packet on port 139.
CVE-2002-0598 1 Foundstone 1 Fscan 2023-12-10 7.5 HIGH N/A
Format string vulnerability in Foundstone FScan 1.12 with banner grabbing enabled allows remote attackers to execute arbitrary code on the scanning system via format string specifiers in the server banner.
CVE-2000-0365 1 Redhat 1 Linux 2023-12-10 4.6 MEDIUM N/A
Red Hat Linux 6.0 installs the /dev/pts file system with insecure modes, which allows local users to write to other tty devices.
CVE-2001-1526 1 Easyscripts 1 Easynews 2023-12-10 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in the comments action in index.php in easyNews 1.5 and earlier allows remote attackers to inject arbitrary web script or HTML via the zeit parameter.
CVE-2002-0797 1 Sun 2 Solaris, Sunos 2023-12-10 10.0 HIGH N/A
Buffer overflow in the MIB parsing component of mibiisa for Solaris 5.6 through 8 allows remote attackers to gain root privileges.
CVE-2004-1668 1 Easyweb 1 Factory Subjects Module 2023-12-10 7.5 HIGH N/A
Multiple SQL injection vulnerabilities in index.php in Subjects 2.0 Postnuke module allow remote attackers to execute arbitrary SQL commands via the (1) pageid, (2) subid, or (3) catid parameters.
CVE-1999-0653 2023-12-10 10.0 HIGH N/A
A component service related to NIS+ is running.