Search Results (29815 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2005-2236 1 Ibm 1 Aix 2025-04-03 N/A
Format string vulnerability in the paginit command in IBM AIX 5.3, and possibly other versions, might allow local users to execute arbitrary code via format strings in command line arguments.
CVE-2004-0838 1 Lexar 1 Jumpdrive Secure 2025-04-03 N/A
Lexar Safe Guard for JumpDrive Secure 1.0 stores the password insecurely in memory using XOR encryption, which allows local users to read the password directly from the device and access the password protected part of the drive.
CVE-2006-2966 1 Particle Soft 1 Particle Wiki 2025-04-03 N/A
Cross-site scripting (XSS) vulnerability in Particle Soft Particle Wiki 1.0.2 allows remote attackers to inject arbitrary web script or HTML via a BR element with an extraneous IMG tag and a STYLE attribute that contains "/**/" comment sequences, which bypasses the XSS protection scheme.
CVE-2006-1037 1 Oracle 2 Diagnostics, E-business Suite 2025-04-03 N/A
SQL injection vulnerability in the Oracle Diagnostics module 2.2 and earlier allows remote attackers to execute arbitrary SQL commands via unknown attack vectors.
CVE-2005-0149 2 Mozilla, Redhat 3 Mozilla, Thunderbird, Enterprise Linux 2025-04-03 N/A
Thunderbird 0.6 through 0.9 and Mozilla 1.7 through 1.7.3 does not obey the network.cookie.disableCookieForMailNews preference, which could allow remote attackers to bypass the user's intended privacy and security policy by using cookies in e-mail messages.
CVE-2005-1614 1 Ultimate Php Board 1 Ultimate Php Board 2025-04-03 N/A
Cross-site scripting (XSS) vulnerability in viewforum.php in Ultimate PHP Board (UPB) 1.8 through 1.9.6 allows remote attackers to inject arbitrary web script or HTML via the postorder parameter.
CVE-1999-0206 1 Eric Allman 1 Sendmail 2025-04-03 N/A
MIME buffer overflow in Sendmail 8.8.0 and 8.8.1 gives root access.
CVE-2002-0662 2 Dan Mueth, Redhat 2 Scrollkeeper, Linux 2025-04-03 N/A
scrollkeeper-get-cl in ScrollKeeper 0.3 to 0.3.11 allows local users to create and overwrite files via a symlink attack on the scrollkeeper-tempfile.x temporary files.
CVE-2003-0298 1 Mozilla 1 Mozilla 2025-04-03 N/A
The IMAP Client for Mozilla 1.3 and 1.4a allows remote malicious IMAP servers to cause a denial of service and possibly execute arbitrary code via certain large (1) literal and possibly (2) mailbox size values that cause either integer signedness errors or integer overflow errors.
CVE-2006-3963 1 Banex 1 Banex 2025-04-03 N/A
Multiple SQL injection vulnerabilities in Banex PHP MySQL Banner Exchange 2.21 allow remote attackers to execute arbitrary SQL commands via the (1) site_name parameter to (a) signup.php, and the (2) id, (3) deleteuserbanner, (4) viewmem, (5) viewmemunb, (6) viewunmem,or (7) deleteuser parameters to (b) admin.php.
CVE-1999-0207 1 Great Circle Associates 1 Majordomo 2025-04-03 N/A
Remote attacker can execute commands through Majordomo using the Reply-To field and a "lists" command.
CVE-1999-1458 1 Digital 1 Unix 2025-04-03 N/A
Buffer overflow in at program in Digital UNIX 4.0 allows local users to gain root privileges via a long command line argument.
CVE-1999-1463 1 Microsoft 1 Windows Nt 2025-04-03 N/A
Windows NT 4.0 before SP3 allows remote attackers to bypass firewall restrictions or cause a denial of service (crash) by sending improperly fragmented IP packets without the first fragment, which the TCP/IP stack incorrectly reassembles into a valid session.
CVE-1999-0215 1 Sgi 1 Irix 2025-04-03 N/A
Routed allows attackers to append data to files.
CVE-2005-2295 1 Pyrosoft Inc 1 Netpanzer 2025-04-03 N/A
NetPanzer 0.8 and earlier allows remote attackers to cause a denial of service (infinite loop) via a packet with a zero datablock size.
CVE-1999-1464 1 Cisco 1 Ios 2025-04-03 N/A
Vulnerability in Cisco IOS 11.1CC and 11.1CT with distributed fast switching (DFS) enabled allows remote attackers to bypass certain access control lists when the router switches traffic from a DFS-enabled interface to an interface that does not have DFS enabled, as described by Cisco bug CSCdk35564.
CVE-1999-0218 1 Livingston Portmaster 1 Portmaster 2025-04-03 N/A
Livingston portmaster machines could be rebooted via a series of commands.
CVE-1999-1465 1 Cisco 1 Ios 2025-04-03 N/A
Vulnerability in Cisco IOS 11.1 through 11.3 with distributed fast switching (DFS) enabled allows remote attackers to bypass certain access control lists when the router switches traffic from a DFS-enabled input interface to an output interface with a logical subinterface, as described by Cisco bug CSCdk43862.
CVE-1999-1470 1 Eastman Software 1 Work Management 2025-04-03 N/A
Eastman Work Management 3.21 stores passwords in cleartext in the COMMON and LOCATOR registry keys, which could allow local users to gain privileges.
CVE-1999-1565 2 Debian, Earl Hood 2 Debian Linux, Man2html 2025-04-03 N/A
Man2html 2.1 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file.