Vulnerabilities (CVE)

Filtered by NVD-CWE-Other
Total 29868 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-2964 1 Abisource 1 Community Abiword 2025-04-03 7.5 HIGH N/A
Stack-based buffer overflow in AbiWord before 2.2.10 allows attackers to execute arbitrary code via the RTF import mechanism.
CVE-2000-0764 1 Intel 1 Express 8100 2025-04-03 5.0 MEDIUM N/A
Intel Express 500 series switches allow a remote attacker to cause a denial of service via a malformed IP packet.
CVE-2006-3006 1 Ifoto 1 Ifoto 2025-04-03 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in iFoto 0.20, and possibly other versions before 0.50, allows remote attackers to inject arbitrary HTML or web script via a base64-encoded file parameter.
CVE-2001-0494 1 Ipswitch 1 Imail 2025-04-03 7.5 HIGH N/A
Buffer overflow in IPSwitch IMail SMTP server 6.06 and possibly prior versions allows remote attackers to execute arbitrary code via a long From: header.
CVE-1999-0592 2025-04-03 10.0 HIGH N/A
The Logon box of a Windows NT system displays the name of the last user who logged in.
CVE-2006-0012 1 Microsoft 6 Windows 2000, Windows 2003 Server, Windows 98 and 3 more 2025-04-03 5.1 MEDIUM N/A
Unspecified vulnerability in Windows Explorer in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 SP1 allows remote attackers to execute arbitrary code via attack vectors involving COM objects and "crafted files and directories," aka the "Windows Shell Vulnerability."
CVE-2005-2011 1 Php Arena 1 Pafaq 2025-04-03 4.3 MEDIUM N/A
Multiple cross-site scripting (XSS) vulnerabilities in paFAQ 1.0 Beta 4 allow remote attackers to inject arbitrary web script or HTML, as demonstrated via the id parameter in a Question action.
CVE-2003-0407 1 Gnome 1 Batalla Naval 2025-04-03 10.0 HIGH N/A
Buffer overflow in gbnserver for Gnome Batalla Naval 1.0.4 allows remote attackers to execute arbitrary code via a long connection string.
CVE-2004-2557 1 Netgear 1 Wg602 2025-04-03 5.0 MEDIUM N/A
NetGear WG602 (aka WG602v1) Wireless Access Point 1.7.14 has a hardcoded account of username "superman" and password "21241036", which allows remote attackers to modify the configuration.
CVE-1999-1309 1 Sendmail 1 Sendmail 2025-04-03 7.2 HIGH N/A
Sendmail before 8.6.7 allows local users to gain root access via a large value in the debug (-d) command line option.
CVE-2005-4566 1 Adtran 1 Netvanta 2025-04-03 10.0 HIGH N/A
Buffer overflow in the Internet Key Exchange version 1 (IKEv1) implementation in ADTRAN NetVanta before 10.03.03.E might allow remote attackers to have an unknown impact via crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1.
CVE-2002-0926 1 Wolfram Research 1 Webmathematica 2025-04-03 5.0 MEDIUM N/A
Directory traversal vulnerability in Wolfram Research webMathematica 1.0.0 and 1.0.0.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the MSPStoreID parameter.
CVE-2005-2243 1 Cisco 1 Call Manager 2025-04-03 5.0 MEDIUM N/A
Memory leak in inetinfo.exe in Cisco CallManager (CCM) 3.2 and earlier, 3.3 before 3.3(5), 4.0 before 4.0(2a)SR2b, and 4.1 4.1 before 4.1(3)SR1, when Multi Level Admin (MLA) is enabled, allows remote attackers to cause a denial of service (memory consumption) via a large number of Admin Service Tool (AST) logins that fail.
CVE-2004-1996 1 Simple Machines 1 Smf 2025-04-03 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in Simple Machines Forum (SMF) 1.0 allows remote attackers to inject arbitrary web script via the size tag.
CVE-2002-1242 1 Francisco Burzi 1 Php-nuke 2025-04-03 7.5 HIGH N/A
SQL injection vulnerability in PHP-Nuke before 6.0 allows remote authenticated users to modify the database and gain privileges via the "bio" argument to modules.php.
CVE-2005-3917 1 Commodityrentals 1 Commodityrentals 2025-04-03 7.5 HIGH N/A
SQL injection vulnerability in usersession in CommodityRentals 2.0 Online Rental Business Creator script allows remote attackers to execute arbitrary SQL commands via the user_id parameter.
CVE-2002-0583 1 Workforceroi 1 Xpede 2025-04-03 5.0 MEDIUM N/A
WorkforceROI Xpede 4.1 uses a small random namespace (5 alphanumeric characters) for temporary expense claim reports in the /reports/temp directory, which allows remote attackers to read the reports via a brute force attack.
CVE-2005-0323 1 Captaris 1 Infinite Mobile Delivery Webmail 2025-04-03 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in Infinite Mobile Delivery Webmail 2.6 allows remote attackers to inject arbitrary web script or HTML via the URL.
CVE-2001-1061 1 Ibm 1 Aix 2025-04-03 10.0 HIGH N/A
Vulnerability in lsmcode in unknown versions of AIX, possibly related to a usage error.
CVE-2002-1698 1 Microsoft 1 Msn Messenger 2025-04-03 5.0 MEDIUM N/A
Buffer overflow in Microsoft MSN Messenger Service 1.0 through 4.6 allows remote attackers to cause a denial of service (crash) via a long FN (font) argument in the message header.