Vulnerabilities (CVE)

Filtered by NVD-CWE-Other
Total 29864 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2001-0058 1 Cisco 2 Broadband Operating System, Cisco 6xx Routers 2025-04-03 5.0 MEDIUM N/A
The Web interface to Cisco 600 routers running CBOS 2.4.1 and earlier allow remote attackers to cause a denial of service via a URL that does not end in a space character.
CVE-2003-0321 1 Colten Edwards 1 Bitchx 2025-04-03 7.5 HIGH N/A
Multiple buffer overflows in BitchX IRC client 1.0-0c19 and earlier allow remote malicious IRC servers to cause a denial of service (crash) and possibly execute arbitrary code via long hostnames, nicknames, or channel names, which are not properly handled by the functions (1) send_ctcp, (2) cannot_join_channel, (3) cluster, (4) BX_compress_modes, (5) handle_oper_vision, and (6) ban_it.
CVE-2005-2657 1 Common-lisp-controller 1 Common-lisp-controller 2025-04-03 4.6 MEDIUM N/A
Unknown vulnerability in common-lisp-controller 4.18 and earlier allows local users to gain privileges by compiling arbitrary code in the cache directory, which is executed by another user if the user has not run Common Lisp before.
CVE-2002-0123 1 Mdg Computer Services 1 Web Server 4d Ecommerce 2025-04-03 7.5 HIGH N/A
MDG Computer Services Web Server 4D WS4D/eCommerce 3.0 and earlier, and possibly 3.5.3, allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long HTTP request.
CVE-2003-0329 1 Aclogic 1 Cesarftp 2025-04-03 4.6 MEDIUM N/A
CesarFTP 0.99g stores user names and passwords in plaintext in the settings.ini file, which could allow local users to gain privileges.
CVE-2003-1052 1 Ibm 2 Db2, Db2 Universal Database 2025-04-03 7.2 HIGH N/A
IBM DB2 7.1 and 8.1 allow the bin user to gain root privileges by modifying the shared libraries that are used in setuid root programs.
CVE-2005-0834 1 Belkin 1 Belkin 54g Wireless Router 2025-04-03 5.0 MEDIUM N/A
Belkin 54G (F5D7130) wireless router enables SNMP by default in a manner that allows remote attackers to obtain sensitive information.
CVE-2005-2319 1 Yawp 1 Yawp 2025-04-03 5.0 MEDIUM N/A
PHP remote file include vulnerability in Yawp library 1.0.6 and earlier, as used in YaWiki and possibly other products, allows remote attackers to include arbitrary files via the _Yawp[conf_path] parameter.
CVE-2006-0814 1 Lighttpd 1 Lighttpd 2025-04-03 5.0 MEDIUM N/A
response.c in Lighttpd 1.4.10 and possibly previous versions, when run on Windows, allows remote attackers to read arbitrary source code via requests that contain trailing (1) "." (dot) and (2) space characters, which are ignored by Windows, as demonstrated by PHP files.
CVE-2000-1071 1 Netscape 1 Iplanet Ical 2025-04-03 10.0 HIGH N/A
The GUI installation for iCal 2.1 Patch 2 disables access control for the X server using an "xhost +" command, which allows remote attackers to monitor X Windows events and gain privileges.
CVE-2001-0388 3 Freebsd, Mandrakesoft, Suse 3 Freebsd, Mandrake Linux, Suse Linux 2025-04-03 10.0 HIGH N/A
time server daemon timed allows remote attackers to cause a denial of service via malformed packets.
CVE-2006-1776 1 Simplog 1 Simplog 2025-04-03 7.5 HIGH N/A
PHP remote file inclusion vulnerability in doc/index.php in Jeremy Ashcraft Simplog 0.9.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the s parameter.
CVE-2005-3535 1 Ketm 1 Ketm 2025-04-03 7.5 HIGH N/A
Buffer overflow in KETM 0.0.6 allows local users to execute arbitrary code via unknown vectors.
CVE-2001-0897 1 Infopop 1 Ultimate Bulletin Board 2025-04-03 5.0 MEDIUM N/A
Cross-site scripting vulnerability in Infopop Ultimate Bulletin Board (UBB) before 5.47e allows remote attackers to steal user cookies via an [IMG] tag that references an about: URL with an onerror field.
CVE-2004-1286 1 Napshare 1 Napshare 2025-04-03 10.0 HIGH N/A
Buffer overflow in the auto_filter_extern function in auto.c for NapShare 1.2, with the extern filter enabled, allows remote attackers to execute arbitrary code via a crafted gnutella response.
CVE-2000-0163 1 Freebsd 1 Freebsd 2025-04-03 4.6 MEDIUM N/A
asmon and ascpu in FreeBSD allow local users to gain root privileges via a configuration file.
CVE-2006-0636 1 Eyeos Project 1 Eyeos 2025-04-03 7.5 HIGH N/A
desktop.php in eyeOS 0.8.9 and earlier tests for the existence of the _SESSION variable before calling the session_start function, which allows remote attackers to execute arbitrary PHP code and possibly conduct other attacks by modifying critical assumed-immutable variables, as demonstrated using PHP code in the _SESSION[apps][eyeOptions.eyeapp][wrapup] variable.
CVE-2006-1969 1 Kcscripts 1 Portal Pack 2025-04-03 2.6 LOW N/A
Cross-site scripting (XSS) vulnerability in search/search.cgi in an unspecified KCScripts script, probably Search Engine or Site Search, distributed individually and as part of Portal Pack 6.0 and earlier, allows remote attackers to inject arbitrary web script or HTML via the q parameter.
CVE-2005-3738 1 Mambo 1 Mambo Site Server 2025-04-03 2.6 LOW N/A
globals.php in Mambo Site Server 4.0.14 and earlier, when register_globals is disabled, allows remote attackers to overwrite variables in the GLOBALS array and conduct various attacks, as demonstrated using the mosConfig_absolute_path parameter to content.html.php for remote PHP file inclusion.
CVE-2001-1572 1 Linux 1 Linux Kernel 2025-04-03 7.5 HIGH N/A
The MAC module in Netfilter in Linux kernel 2.4.1 through 2.4.11, when configured to filter based on MAC addresses, allows remote attackers to bypass packet filters via small packets.