Vulnerabilities (CVE)

Total 266102 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2003-1436 1 Crossnuke 1 Nukebrowser 2024-02-28 6.8 MEDIUM N/A
PHP remote file inclusion vulnerability in nukebrowser.php in Nukebrowser 2.1 to 2.5 allows remote attackers to execute arbitrary PHP code via the filhead parameter.
CVE-1999-0377 1 Unix 1 Unix 2024-02-28 5.0 MEDIUM N/A
Process table attack in Unix systems allows a remote attacker to perform a denial of service by filling a machine's process tables through multiple connections to network services.
CVE-2001-0221 1 Freebsd 1 Ja-xklock 2024-02-28 7.2 HIGH N/A
Buffer overflow in ja-xklock 2.7.1 and earlier allows local users to gain root privileges.
CVE-2002-1976 1 Linux 1 Linux Kernel 2024-02-28 2.1 LOW N/A
ifconfig, when used on the Linux kernel 2.2 and later, does not report when the network interface is in promiscuous mode if it was put in promiscuous mode using PACKET_MR_PROMISC, which could allow attackers to sniff the network without detection, as demonstrated using libpcap.
CVE-2003-1520 1 Fuzzymonkey 1 Myclassifieds 2024-02-28 6.8 MEDIUM N/A
SQL injection vulnerability in FuzzyMonkey My Classifieds 2.11 allows remote attackers to execute arbitrary SQL commands via the email parameter.
CVE-2002-0458 1 Linux-sottises 1 News-tnk 2024-02-28 7.6 HIGH N/A
Cross-site scripting vulnerability in News-TNK 1.2.1 and earlier allows remote attackers to execute arbitrary Javascript via the WEB parameter.
CVE-2004-1140 1 Ethereal Group 1 Ethereal 2024-02-28 5.0 MEDIUM N/A
Ethereal 0.9.0 through 0.10.7 allows remote attackers to cause a denial of service (application hang) and possibly fill available disk space via an invalid RTP timestamp.
CVE-2003-0930 1 Clearswift 1 Mailsweeper 2024-02-28 7.5 HIGH N/A
Clearswift MAILsweeper before 4.3.15 does not properly detect filenames in BinHex (HQX) encoded files, which allows remote attackers to bypass intended policy.
CVE-2003-1191 1 E107 1 E107 2024-02-28 5.0 MEDIUM N/A
chatbox.php in e107 0.554 and 0.603 allows remote attackers to cause a denial of service (pages fail to load) via HTML in the Name field, which prevents the main.php form from being loaded.
CVE-2000-0359 1 Acme Labs 1 Thttpd 2024-02-28 10.0 HIGH N/A
Buffer overflow in Trivial HTTP (THTTPd) allows remote attackers to cause a denial of service or execute arbitrary commands via a long If-Modified-Since header.
CVE-2000-0639 1 Sean Macguire 1 Big Brother 2024-02-28 7.5 HIGH N/A
The default configuration of Big Brother 1.4h2 and earlier does not include proper access restrictions, which allows remote attackers to execute arbitrary commands by using bbd to upload a file whose extension will cause it to be executed as a CGI script by the web server.
CVE-2000-0150 2 Checkpoint, Cisco 2 Firewall-1, Pix Firewall Software 2024-02-28 7.5 HIGH N/A
Check Point Firewall-1 allows remote attackers to bypass port access restrictions on an FTP server by forcing it to send malicious packets that Firewall-1 misinterprets as a valid 227 response to a client's PASV attempt.
CVE-2001-1253 1 Com2001 1 Alexis Server 2024-02-28 4.6 MEDIUM N/A
Alexis 2.0 and 2.1 in COM2001 InternetPBX stores voicemail passwords in plain text in the com2001.ini file, which could allow local users to make long distance calls as other users.
CVE-2002-0335 1 Galacticomm Technologies 2 Worldgroup, Worldgroup Lite Personal Server 2024-02-28 10.0 HIGH N/A
Buffer overflow in Galacticomm Worldgroup web server 3.20 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long HTTP GET request.
CVE-2004-2196 1 Zanfi Solutions 1 Zanfi Cms Lite 2024-02-28 5.0 MEDIUM N/A
Zanfi CMS lite 1.1 allows remote attackers to obtain the full path of the web server via direct requests without required arguments to (1) adm_pages.php, (2) corr_pages.php, (3) del_block.php, (4) del_page.php, (5) footer.php, (6) home.php, and others.
CVE-2000-0781 1 Ca 1 Arcserve Backup 2024-02-28 7.2 HIGH N/A
uagentsetup in ARCServeIT Client Agent 6.62 does not properly check for the existence or ownership of a temporary file which is moved to the agent.cfg configuration file, which allows local users to execute arbitrary commands by modifying the temporary file before it is moved.
CVE-2002-1047 1 Watchguard 1 Soho Firewall 2024-02-28 7.5 HIGH N/A
The FTP service in Watchguard Soho Firewall 5.0.35a allows remote attackers to gain privileges with a correct password but an incorrect user name.
CVE-2004-0566 1 Microsoft 1 Internet Explorer 2024-02-28 7.5 HIGH N/A
Integer overflow in imgbmp.cxx for Windows 2000 allows remote attackers to execute arbitrary code via a BMP image with a large bfOffBits value.
CVE-1999-1344 1 Auto Ftp 1 Auto Ftp 2024-02-28 7.5 HIGH N/A
Auto_FTP.pl script in Auto_FTP 0.2 stores usernames and passwords in plaintext in the auto_ftp.conf configuration file.
CVE-2001-0191 2 Andynorman, Gnu 2 Gnuserv, Xemacs 2024-02-28 10.0 HIGH N/A
gnuserv before 3.12, as shipped with XEmacs, does not properly check the specified length of an X Windows MIT-MAGIC-COOKIE cookie, which allows remote attackers to execute arbitrary commands via a buffer overflow, or brute force authentication by using a short cookie length.