Vulnerabilities (CVE)

Total 265812 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-1999-1458 1 Digital 1 Unix 2024-02-28 7.2 HIGH N/A
Buffer overflow in at program in Digital UNIX 4.0 allows local users to gain root privileges via a long command line argument.
CVE-2003-1348 1 Ftls 1 Guestbook 2024-02-28 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in guestbook.cgi in ftls.org Guestbook 1.1 allows remote attackers to inject arbitrary web script or HTML via the (1) comment, (2) name, or (3) title field.
CVE-2002-1248 1 Northern Solutions 1 Xeneo Web Server 2024-02-28 5.0 MEDIUM N/A
Northern Solutions Xeneo Web Server 2.1.0.0, 2.0.759.6, and other versions before 2.1.5 allows remote attackers to cause a denial of service (crash) via a GET request for a "%" URI.
CVE-2002-1234 2024-02-28 N/A N/A
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2002-0180. Reason: This candidate is a an out-of-band assignment duplicate of CVE-2002-0180. Notes: All CVE users should reference CVE-2002-0180 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage
CVE-1999-0517 2 Hp, Sun 2 Hp-ux, Sunos 2024-02-28 7.5 HIGH N/A
An SNMP community name is the default (e.g. public), null, or missing.
CVE-2002-1512 1 Tolis Group 1 Bru 2024-02-28 6.2 MEDIUM N/A
xbru in BRU Workstation 17.0 allows local users to overwrite arbitrary files and gain root privileges via a symlink attack on the xbru_dscheck.dd temporary file.
CVE-2001-0914 2 Linux, Suse 2 Linux Kernel, Suse Linux 2024-02-28 2.1 LOW N/A
Linux kernel before 2.4.11pre3 in multiple Linux distributions allows local users to cause a denial of service (crash) by starting the core vmlinux kernel, possibly related to poor error checking during ELF loading.
CVE-2001-0652 1 Sun 1 Sunos 2024-02-28 7.2 HIGH N/A
Heap overflow in xlock in Solaris 2.6 through 8 allows local users to gain root privileges via a long (1) XFILESEARCHPATH or (2) XUSERFILESEARCHPATH environmental variable.
CVE-2003-0435 1 Typespeed 1 Typespeed 2024-02-28 7.5 HIGH N/A
Buffer overflow in net_swapscore for typespeed 0.4.1 and earlier allows remote attackers to execute arbitrary code.
CVE-2003-0090 2024-02-28 N/A N/A
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2000-0844. Reason: This candidate is a duplicate of CVE-2000-0844. Notes: All CVE users should reference CVE-2000-0844 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage
CVE-2004-0121 1 Microsoft 2 Office, Outlook 2024-02-28 7.5 HIGH N/A
Argument injection vulnerability in Microsoft Outlook 2002 does not sufficiently filter parameters of mailto: URLs when using them as arguments when calling OUTLOOK.EXE, which allows remote attackers to use script code in the Local Machine zone and execute arbitrary programs.
CVE-2001-0906 1 Tetex 1 Tetex 2024-02-28 6.2 MEDIUM N/A
teTeX filter before 1.0.7 allows local users to gain privileges via a symlink attack on temporary files that are produced when printing .dvi files using lpr.
CVE-2003-1552 1 Graeme 1 Uploader 2024-02-28 6.8 MEDIUM N/A
Unrestricted file upload vulnerability in uploader.php in Uploader 1.1 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in uploads/.
CVE-2002-1645 1 Ssh 1 Ssh2 2024-02-28 10.0 HIGH N/A
Buffer overflow in the URL catcher feature for SSH Secure Shell for Workstations client 3.1 to 3.2.0 allows remote attackers to execute arbitrary code via a long URL.
CVE-2003-1157 1 Citrix 1 Metaframe 2024-02-28 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in login.asp in Citrix MetaFrame XP Server 1.0 allows remote attackers to inject arbitrary web script or HTML via the NFuse_Message parameter.
CVE-2002-0094 1 Fraunhofer Fit 1 Bscw 2024-02-28 7.5 HIGH N/A
config_converters.py in BSCW (Basic Support for Cooperative Work) 3.x and versions before 4.06 allows remote attackers to execute arbitrary commands via shell metacharacters in the file name during filename conversion.
CVE-1999-0999 1 Microsoft 1 Sql Server 2024-02-28 4.3 MEDIUM N/A
Microsoft SQL 7.0 server allows a remote attacker to cause a denial of service via a malformed TDS packet.
CVE-2002-1614 1 Hp 2 Hp-ux, Tru64 2024-02-28 7.2 HIGH N/A
Buffer overflow in HP Tru64 UNIX allows local users to execute arbitrary code via a long argument to /usr/bin/at.
CVE-2002-1112 1 Mantis 1 Mantis 2024-02-28 5.0 MEDIUM N/A
Mantis before 0.17.4 allows remote attackers to list project bugs without authentication by modifying the cookie that is used by the "View Bugs" page.
CVE-2004-2179 1 Microsoft 2 Frontpage, Ie 2024-02-28 5.0 MEDIUM N/A
asycpict.dll, as used in Microsoft products such as Front Page 97 and 98, allows remote attackers to cause a denial of service (hang) via a JPEG image with maximum height and width values.