Vulnerabilities (CVE)

Total 266918 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2000-0794 1 Sgi 1 Irix 2024-02-28 7.2 HIGH N/A
Buffer overflow in IRIX libgl.so library allows local users to gain root privileges via a long HOME variable to programs such as (1) gmemusage and (2) gr_osview.
CVE-2004-2221 1 Mercantec 1 Softcart 2024-02-28 7.5 HIGH N/A
Buffer overflow in SoftCart.exe in Mercantec SoftCart 4.00b allows remote attackers to execute arbitrary code via a long parameter in an HTTP GET request.
CVE-2000-0145 1 Debian 1 Debian Linux 2024-02-28 7.5 HIGH N/A
The libguile.so library file used by gnucash in Debian GNU/Linux is installed with world-writable permissions.
CVE-1999-1589 1 Ibm 1 Aix 2024-02-28 7.2 HIGH N/A
Unspecified vulnerability in crontab in IBM AIX 3.2 allows local users to gain root privileges via unknown attack vectors.
CVE-1999-0002 3 Bsdi, Caldera, Redhat 3 Bsd Os, Openlinux, Linux 2024-02-28 10.0 HIGH N/A
Buffer overflow in NFS mountd gives root access to remote attackers, mostly in Linux systems.
CVE-2002-1708 1 Basilix 1 Basilix Webmail 2024-02-28 6.8 MEDIUM N/A
Cross-site scripting vulnerability (XSS) in BasiliX Webmail 1.10 allows remote attackers to execute arbitrary script as other users by injecting script into the (1) subject or (2) message fields.
CVE-2002-0306 1 Avengers News System 1 Avengers News System 2024-02-28 7.5 HIGH N/A
ans.pl in Avenger's News System (ANS) 2.11 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the p (plugin) parameter.
CVE-2004-0398 2 Debian, Webdav 3 Debian Linux, Cadaver, Neon 2024-02-28 7.5 HIGH N/A
Heap-based buffer overflow in the ne_rfc1036_parse date parsing function for the neon library (libneon) 0.24.5 and earlier, as used by cadaver before 0.22, allows remote WebDAV servers to execute arbitrary code on the client.
CVE-2001-0526 1 Sun 1 Solaris 2024-02-28 4.6 MEDIUM N/A
Buffer overflow in the Xview library as used by mailtool in Solaris 8 and earlier allows a local attacker to gain privileges via the OPENWINHOME environment variable.
CVE-2003-1380 1 Bisonftp 1 Bisonftp Server 4 2024-02-28 7.5 HIGH N/A
Directory traversal vulnerability in BisonFTP Server 4 release 2 allows remote attackers to (1) list directories above the root via an 'ls @../' command, or (2) list files above the root via a "mget @../FILE" command.
CVE-2001-1440 1 Ibm 1 Aix 2024-02-28 10.0 HIGH N/A
Unknown vulnerability in login for AIX 5.1L, when using loadable authentication modules, allows remote attackers to gain access to the system.
CVE-2002-1071 1 Zyxel 1 Prestige 2024-02-28 5.0 MEDIUM N/A
ZyXEL Prestige 642R allows remote attackers to cause a denial of service in the Telnet, FTP, and DHCP services (crash) via a TCP packet with both the SYN and ACK flags set.
CVE-2002-2281 1 Symantec 1 Java 2024-02-28 10.0 HIGH N/A
Symantec Java! JIT (Just-In-Time) Compiler for Netscape Communicator 4.0 through 4.8 allows remote attackers to execute arbitrary Java commands via an applet that uses a jump call, which is not correctly compiled by the JIT compiler.
CVE-1999-0654 2024-02-28 10.0 HIGH N/A
The OS/2 or POSIX subsystem in NT is enabled.
CVE-2000-0841 1 Davide Libenzi 1 Xmail 2024-02-28 10.0 HIGH N/A
Buffer overflow in XMail POP3 server before version 0.59 allows remote attackers to execute arbitrary commands via a long APOP command.
CVE-2004-2165 1 Impressions Games 1 Lords Of The Realm Iii 2024-02-28 5.0 MEDIUM N/A
Lords of the Realm III 1.01 and earlier, when in the lobby stage, allows remote attackers to cause a denial of service (crash from unallocated memory write) via a long user nickname.
CVE-1999-0701 1 Microsoft 1 Windows Nt 2024-02-28 7.2 HIGH N/A
After an unattended installation of Windows NT 4.0, an installation file could include sensitive information such as the local Administrator password.
CVE-2004-1328 1 Hp 1 Hp-ux 2024-02-28 7.2 HIGH N/A
Unknown vulnerability in newgrp in HP-UX B.11.00, B.11.04, and B.11.11 allows local users to gain elevated privileges.
CVE-2002-0808 1 Mozilla 1 Bugzilla 2024-02-28 7.5 HIGH N/A
Bugzilla 2.14 before 2.14.2, and 2.16 before 2.16rc2, when performing a mass change, sets the groupset of all bugs to the groupset of the first bug, which could inadvertently cause insecure groupset permissions to be assigned to some bugs.
CVE-2003-0582 2024-02-28 N/A N/A
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2003-0504. Reason: This candidate is a duplicate of CVE-2003-0504. Notes: All CVE users should reference CVE-2003-0504 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage