Vulnerabilities (CVE)

Filtered by NVD-CWE-Other
Total 29521 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2002-2088 1 Mosix Project 1 Clump Os 2025-04-03 10.0 HIGH N/A
The MOSIX Project clump/os 5.4 creates a default VNC account without a password, which allows remote attackers to gain root access.
CVE-2006-0384 1 Apple 2 Mac Os X, Mac Os X Server 2025-04-03 7.5 HIGH N/A
automount in Mac OS X 10.4.5 and earlier allows remote file servers to cause a denial of service (unresponsiveness) or execute arbitrary code via unspecified vectors that cause automount to "mount file systems with reserved names".
CVE-2006-3094 1 Vincent Hor 1 Calendarix Basic 2025-04-03 5.1 MEDIUM N/A
Multiple SQL injection vulnerabilities in Calendarix Basic 0.7.20060401 and earlier, with magic_quotes_gpc disabled, allow remote attackers to execute arbitrary SQL commands via the id parameter in (1) cal_event.php and (2) cal_popup.php.
CVE-2005-3216 1 Sophos 1 Sophos Anti-virus 2025-04-03 5.1 MEDIUM N/A
Multiple interpretation error in unspecified versions of Sophos Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.
CVE-2005-1728 1 Apple 1 Mac Os X 2025-04-03 4.6 MEDIUM N/A
MCX Client for Apple Mac OS X 10.4.x up to 10.4.1 insecurely logs Portable Home Directory credentials, which allows local users to obtain the credentials.
CVE-1999-0630 2025-04-03 10.0 HIGH N/A
The NT Alerter and Messenger services are running.
CVE-1999-0060 1 Lucent 3 Ascend Max Router, Ascend Pipeline Router, Ascend Tnt Router 2025-04-03 5.0 MEDIUM N/A
Attackers can cause a denial of service in Ascend MAX and Pipeline routers with a malformed packet to the discard port, which is used by the Java Configurator tool.
CVE-2003-0156 1 Cross Referencer 1 Lxr 2025-04-03 5.0 MEDIUM N/A
Directory traversal vulnerability in Cross-Referencing Linux (LXR) allows remote attackers to read arbitrary files via .. (dot dot) sequences in the v parameter.
CVE-2002-1769 1 Microsoft 2 Site Server, Site Server Commerce 2025-04-03 7.5 HIGH N/A
Microsoft Site Server 3.0 prior to SP4 installs a default user, LDAP_Anonymous, with a default password of LdapPassword_1, which allows remote attackers the "Log on locally" privilege.
CVE-2002-2203 1 Sun 2 Solaris, Sunos 2025-04-03 4.9 MEDIUM N/A
Unknown vulnerability in the System Serial Console terminal in Solaris 2.5.1, 2.6, and 7 allows local users to monitor keystrokes and possibly steal sensitive information.
CVE-2006-4824 1 Quicksilver Forums 1 Quicksilver Forums 2025-04-03 7.5 HIGH N/A
PHP remote file inclusion vulnerability in lib/activeutil.php in Quicksilver Forums (QSF) 1.2.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the set[include_path] parameter.
CVE-2006-2355 1 Ipswitch 1 Whatsup Professional 2025-04-03 5.0 MEDIUM N/A
Ipswitch WhatsUp Professional 2006 and Ipswitch WhatsUp Professional 2006 Premium allows remote attackers to obtain full path information via 404 error messages. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
CVE-1999-1140 1 Alec Muffet 1 Cracklib 2025-04-03 7.2 HIGH N/A
Buffer overflow in CrackLib 2.5 may allow local users to gain root privileges via a long GECOS field.
CVE-2001-0224 1 Brightstation 1 Muscat Empower 2025-04-03 5.0 MEDIUM N/A
Muscat Empower CGI program allows remote attackers to obtain the absolute pathname of the server via an invalid request in the DB parameter.
CVE-1999-0715 1 Microsoft 2 Windows 2000, Windows Nt 2025-04-03 4.6 MEDIUM N/A
Buffer overflow in Remote Access Service (RAS) client allows an attacker to execute commands or cause a denial of service via a malformed phonebook entry.
CVE-2005-4310 1 Ssh 1 Tectia Server 2025-04-03 7.5 HIGH N/A
SSH Tectia Server 5.0.0 (A, F, and T), when allowing host-based authentication only, allows users to log in with the wrong credentials.
CVE-2004-1922 1 Microsoft 1 Internet Explorer 2025-04-03 2.6 LOW N/A
Microsoft Internet Explorer 5.5 and 6.0 allocates memory based on the memory size written in the BMP file instead of the actual BMP file size, which allows remote attackers to cause a denial of service (memory consumption) via a small BMP file with has a large memory size.
CVE-2005-2234 1 Ibm 1 Aix 2025-04-03 7.2 HIGH N/A
Buffer overflow in the getlvname command in IBM AIX 5.1, 5.2 and 5.3, might allow local users to execute arbitrary code via long command line arguments.
CVE-2001-1455 1 Netegrity 1 Siteminder 2025-04-03 7.5 HIGH N/A
Netegrity SiteMinder 3.6 through 4.5.1 allows remote attackers to bypass filtering via URLs containing Unicode characters.
CVE-2005-0764 1 Marc Lehmann 1 Rxvt-unicode 2025-04-03 7.5 HIGH N/A
Buffer overflow in command.C for rxvt-unicode before 5.3 allows remote attackers to execute arbitrary code via a crafted file containing long escape sequences.