Vulnerabilities (CVE)

Total 250745 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-1999-1430 1 Royal 1 Davinci 2023-12-10 2.1 LOW N/A
PIM software for Royal daVinci does not properly password-protext access to data stored in the .mdb (Microsoft Access) file, which allows local users to read the data without a password by directly accessing the files with a different application, such as Access.
CVE-2000-0324 1 Symantec 1 Pcanywhere 2023-12-10 5.0 MEDIUM N/A
pcAnywhere 8.x and 9.0 allows remote attackers to cause a denial of service via a TCP SYN scan, e.g. by nmap.
CVE-2003-0463 2023-12-10 N/A N/A
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none
CVE-2002-1255 1 Microsoft 1 Outlook 2023-12-10 5.0 MEDIUM N/A
Microsoft Outlook 2002 allows remote attackers to cause a denial of service (repeated failure) via an email message with a certain invalid header field that is accessed using POP3, IMAP, or WebDAV, aka "E-mail Header Processing Flaw Could Cause Outlook 2002 to Fail."
CVE-2004-0573 1 Microsoft 5 Frontpage, Office, Publisher and 2 more 2023-12-10 7.5 HIGH N/A
Buffer overflow in the converter for Microsoft WordPerfect 5.x on Office 2000, Office XP, Office 2003, and Works Suites 2001 through 2004 allows remote attackers to execute arbitrary code via a malicious document or website.
CVE-2001-0481 1 Mandrakesoft 1 Mandrake Linux 2023-12-10 7.2 HIGH N/A
Vulnerability in rpmdrake in Mandrake Linux 8.0 related to insecure temporary file handling.
CVE-2000-0194 1 Corel 1 Linux 2023-12-10 7.2 HIGH N/A
buildxconf in Corel Linux allows local users to modify or create arbitrary files via the -x or -f parameters.
CVE-1999-1453 1 Microsoft 1 Internet Explorer 2023-12-10 2.6 LOW N/A
Internet Explorer 4 allows remote attackers (malicious web site operators) to read the contents of the clipboard via the Internet WebBrowser ActiveX object.
CVE-2000-0474 1 Realnetworks 1 Realserver 2023-12-10 7.8 HIGH N/A
Real Networks RealServer 7.x allows remote attackers to cause a denial of service via a malformed request for a page in the viewsource directory.
CVE-2000-0740 1 Network Associates 1 Net Tools Pki Server 2023-12-10 5.0 MEDIUM N/A
Buffer overflow in strong.exe program in NAI Net Tools PKI server 1.0 before HotFix 3 allows remote attackers to execute arbitrary commands via a long URL in the HTTPS port.
CVE-2003-1425 1 Cpanel 1 Cpanel 2023-12-10 10.0 HIGH N/A
guestbook.cgi in cPanel 5.0 allows remote attackers to execute arbitrary commands via the template parameter.
CVE-2003-0938 1 Sap 1 Sap Db 2023-12-10 7.2 HIGH N/A
vos24u.c in SAP database server (SAP DB) 7.4.03.27 and earlier allows local users to gain SYSTEM privileges via a malicious "NETAPI32.DLL" in the current working directory, which is found and loaded by SAP DB before the real DLL, as demonstrated using the SQLAT stored procedure.
CVE-2003-0192 1 Apache 1 Http Server 2023-12-10 6.4 MEDIUM N/A
Apache 2 before 2.0.47, and certain versions of mod_ssl for Apache 1.3, do not properly handle "certain sequences of per-directory renegotiations and the SSLCipherSuite directive being used to upgrade from a weak ciphersuite to a strong one," which could cause Apache to use the weak ciphersuite.
CVE-1999-1134 1 Hp 1 Hp-ux 2023-12-10 7.2 HIGH N/A
Vulnerability in Vue 3.0 in HP 9.x allows local users to gain root privileges, as fixed by PHSS_4038, PHSS_4055, and PHSS_4066.
CVE-2003-1165 1 Brs 1 Webweaver 2023-12-10 5.0 MEDIUM N/A
Buffer overflow in BRS WebWeaver 1.06 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an HTTP request with a long User-Agent header.
CVE-1999-0128 5 Digital, Ibm, Linux and 2 more 9 Osf 1, Aix, Sng and 6 more 2023-12-10 5.0 MEDIUM N/A
Oversized ICMP ping packets can result in a denial of service, aka Ping o' Death.
CVE-2004-0068 1 Phpdig.net 1 Phpdig 2023-12-10 7.5 HIGH N/A
PHP remote file inclusion vulnerability in config.php for PhpDig 1.6.5 and earlier allows remote attackers to execute arbitrary PHP code by modifying the $relative_script_path parameter to reference a URL on a remote web server that contains the code.
CVE-1999-0600 2023-12-10 10.0 HIGH N/A
A network intrusion detection system (IDS) does not verify the checksum on a packet.
CVE-2004-1000 1 Debian 1 Lintian 2023-12-10 2.1 LOW N/A
lintian 1.23 and earlier removes the working directory even if it was not created by lintian, which may allow local users to delete arbitrary files or directories via a symlink attack.
CVE-2002-0340 1 Microsoft 1 Windows Media Player 2023-12-10 7.5 HIGH N/A
Windows Media Player (WMP) 8.00.00.4477, and possibly other versions, automatically detects and executes .wmf and other content, even when the file's extension or content type does not specify .wmf, which could make it easier for attackers to conduct unauthorized activities via Trojan horse files containing .wmf content.