Vulnerabilities (CVE)

Total 266685 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-1999-0747 1 Bsdi 1 Bsd Os 2024-02-28 2.1 LOW N/A
Denial of service in BSDi Symmetric Multiprocessing (SMP) when an fstat call is made when the system has a high CPU load.
CVE-2003-1460 1 Ralf Hoffmann 1 Worker Filemanager 2024-02-28 3.6 LOW N/A
Worker Filemanager 1.0 through 2.7 sets the permissions on the destination directory to world-readable and executable while copying data, which could allow local users to obtain sensitive information.
CVE-2002-0456 1 Qualcomm 1 Eudora 2024-02-28 5.0 MEDIUM N/A
Eudora 5.1 and earlier versions stores attachments in a directory with a fixed name, which could make it easier for attackers to exploit vulnerabilities in other software that rely on installing and reading files from directories with known pathnames.
CVE-2000-0579 1 Sgi 1 Irix 2024-02-28 3.7 LOW N/A
IRIX crontab creates temporary files with predictable file names and with the umask of the user, which could allow local users to modify another user's crontab file as it is being edited.
CVE-2001-0623 1 Sendfile 1 Sendfile 2024-02-28 4.6 MEDIUM N/A
sendfiled, as included with Simple Asynchronous File Transfer (SAFT), on various Linux systems does not properly drop privileges when sending notification emails, which allows local attackers to gain privileges.
CVE-2002-2381 1 Ka-shu Wong 1 Gtetrinet 2024-02-28 7.5 HIGH N/A
Multiple buffer overflows in (1) tetrinet_inmessage, (2) speclist_add and (3) config-getthemeinfo of GTetrinet 0.4.3 and earlier allow remote attackers to casue a denial of service and possibly execute arbitrary code.
CVE-1999-1268 1 Kde 1 Kde 2024-02-28 7.2 HIGH N/A
Vulnerability in KDE konsole allows local users to hijack or observe sessions of other users by accessing certain devices.
CVE-2000-0430 1 Mcmurtrey Whitaker And Associates 1 Cart32 2024-02-28 5.0 MEDIUM N/A
Cart32 allows remote attackers to access sensitive debugging information by appending /expdate to the URL request.
CVE-2004-1078 1 Citrix 2 Metaframe Client, Program Neighborhood Agent 2024-02-28 7.5 HIGH N/A
Stack-based buffer overflow in the client for Citrix Program Neighborhood Agent for Win32 8.00.24737 and earlier and Citrix MetaFrame Presentation Server client for WinCE before 8.33 allows remote attackers to execute arbitrary code via a long cached icon filename in the InName XML element.
CVE-2003-1225 1 Bea 1 Weblogic Server 2024-02-28 2.1 LOW N/A
The default CredentialMapper for BEA WebLogic Server and Express 7.0 and 7.0.0.1 stores passwords in cleartext on disk, which allows local users to extract passwords.
CVE-2002-0738 1 Mhonarc 1 Mhonarc 2024-02-28 7.5 HIGH N/A
MHonArc 2.5.2 and earlier does not properly filter Javascript from archived e-mail messages, which could allow remote attackers to execute script in web clients by (1) splitting the SCRIPT tag into smaller pieces, (2) including the script in a SRC argument to an IMG tag, or (3) using "&={script}" syntax.
CVE-1999-0161 1 Cisco 1 Ios 2024-02-28 7.5 HIGH N/A
In Cisco IOS 10.3, with the tacacs-ds or tacacs keyword, an extended IP access control list could bypass filtering.
CVE-1999-0810 1 Samba 1 Samba 2024-02-28 10.0 HIGH N/A
Denial of service in Samba NETBIOS name service daemon (nmbd).
CVE-2003-0237 1 Mirabilis 1 Icq 2024-02-28 7.5 HIGH N/A
The "ICQ Features on Demand" functionality for Mirabilis ICQ Pro 2003a does not properly verify the authenticity of software upgrades, which allows remote attackers to install arbitrary software via a spoofing attack.
CVE-2004-1907 1 Kerio 1 Personal Firewall 2024-02-28 2.6 LOW N/A
The Web Filtering functionality in Kerio Personal Firewall (KPF) 4.0.13 allows remote attackers to cause a denial of service (crash) by sending hex-encoded URLs containing "%13%12%13".
CVE-2001-0464 1 Crosswind 1 Cyberscheduler 2024-02-28 10.0 HIGH N/A
Buffer overflow in websync.exe in Cyberscheduler allows remote attackers to execute arbitrary commands via a long tzs (timezone) parameter.
CVE-2001-1343 1 Cgicentral 2 Webstore 400, Webstore 400cs 2024-02-28 7.5 HIGH N/A
ws_mail.cgi in WebStore 400/400CS 4.14 allows remote authenticated WebStore administrators to execute arbitrary code via shell metacharacters in the kill parameter.
CVE-1999-1129 1 Cisco 2 Catalyst 2900 Vlan, Ios 2024-02-28 7.5 HIGH N/A
Cisco Catalyst 2900 Virtual LAN (VLAN) switches allow remote attackers to inject 802.1q frames into another VLAN by forging the VLAN identifier in the trunking tag.
CVE-2000-0464 1 Microsoft 1 Internet Explorer 2024-02-28 7.6 HIGH N/A
Internet Explorer 4.x and 5.x allows remote attackers to execute arbitrary commands via a buffer overflow in the ActiveX parameter parsing capability, aka the "Malformed Component Attribute" vulnerability.
CVE-2000-0003 1 Sco 1 Unixware 2024-02-28 10.0 HIGH N/A
Buffer overflow in UnixWare rtpm program allows local users to gain privileges via a long environmental variable.