Total
29612 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-1999-1582 | 1 Cisco | 1 Pix Firewall | 2025-04-03 | N/A |
By design, the "established" command on the Cisco PIX firewall allows connections from one host to arbitrary ports of a target host if an alternative conduit has already been allowed, which can cause administrators to configure less restrictive access controls than intended if they do not understand this functionality. | ||||
CVE-1999-1583 | 1 Ibm | 1 Aix | 2025-04-03 | N/A |
Buffer overflow in nslookup for AIX 4.3 allows local users to execute arbitrary code via a long hostname command line argument. | ||||
CVE-2001-1267 | 2 Gnu, Redhat | 3 Tar, Enterprise Linux, Linux | 2025-04-03 | N/A |
Directory traversal vulnerability in GNU tar 1.13.19 and earlier allows local users to overwrite arbitrary files during archive extraction via a tar file whose filenames contain a .. (dot dot). | ||||
CVE-1999-1585 | 1 Sun | 1 Sunos | 2025-04-03 | N/A |
The (1) rcS and (2) mountall programs in Sun Solaris 2.x, possibly before 2.4, start a privileged shell on the system console if fsck fails while the system is booting, which allows attackers with physical access to gain root privileges. | ||||
CVE-2001-1268 | 2 Info-zip, Redhat | 3 Unzip, Enterprise Linux, Linux | 2025-04-03 | N/A |
Directory traversal vulnerability in Info-ZIP UnZip 5.42 and earlier allows attackers to overwrite arbitrary files during archive extraction via a .. (dot dot) in an extracted filename. | ||||
CVE-2000-0001 | 1 Realnetworks | 1 Realserver | 2025-04-03 | N/A |
RealMedia server allows remote attackers to cause a denial of service via a long ramgen request. | ||||
CVE-2001-1269 | 2 Info-zip, Redhat | 3 Unzip, Enterprise Linux, Linux | 2025-04-03 | N/A |
Info-ZIP UnZip 5.42 and earlier allows attackers to overwrite arbitrary files during archive extraction via filenames in the archive that begin with the '/' (slash) character. | ||||
CVE-2000-0005 | 1 Hp | 3 9000, Aserver, Hp-ux | 2025-04-03 | N/A |
HP-UX aserver program allows local users to gain privileges via a symlink attack. | ||||
CVE-2001-1270 | 1 Pkware | 1 Pkzip | 2025-04-03 | N/A |
Directory traversal vulnerability in the console version of PKZip (pkzipc) 4.00 and earlier allows attackers to overwrite arbitrary files during archive extraction with the -rec (recursive) option via a .. (dot dot) attack on the archived files. | ||||
CVE-2000-0012 | 1 Hughes | 1 Msql | 2025-04-03 | N/A |
Buffer overflow in w3-msql CGI program in miniSQL package allows remote attackers to execute commands. | ||||
CVE-2000-0018 | 1 Windowmaker | 1 Wmmon | 2025-04-03 | N/A |
wmmon in FreeBSD allows local users to gain privileges via the .wmmonrc configuration file. | ||||
CVE-2000-0023 | 1 Lotus | 1 Domino Server | 2025-04-03 | N/A |
Buffer overflow in Lotus Domino HTTP server allows remote attackers to cause a denial of service via a long URL. | ||||
CVE-2001-1272 | 1 Wliang | 1 Wmtv | 2025-04-03 | N/A |
wmtv 0.6.5 and earlier does not properly drop privileges, which allows local users to execute arbitrary commands via the -e (external command) option. | ||||
CVE-2005-3381 | 1 Ukranian National Antivirus | 1 Una | 2025-04-03 | N/A |
Multiple interpretation error in Ukrainian National Antivirus (UNA) 1.83.2.16 with kernel 265 allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an "MZ" magic byte sequence which is normally associated with EXE, which causes the file to be treated as a safe type that could still be executed as a dangerous file type by applications on the end system, as demonstrated by a "triple headed" program that contains EXE, EML, and HTML content, aka the "magic byte bug." | ||||
CVE-2000-0033 | 1 Trend Micro | 1 Interscan Viruswall | 2025-04-03 | N/A |
InterScan VirusWall SMTP scanner does not properly scan messages with malformed attachments. | ||||
CVE-2006-3885 | 1 Checkpoint | 1 Firewall-1 | 2025-04-03 | N/A |
Directory traversal vulnerability in Check Point Firewall-1 R55W before HFA03 allows remote attackers to read arbitrary files via an encoded .. (dot dot) in the URL on TCP port 18264. | ||||
CVE-2000-0036 | 1 Microsoft | 2 Ie, Outlook Express | 2025-04-03 | N/A |
Outlook Express 5 for Macintosh downloads attachments to HTML mail without prompting the user, aka the "HTML Mail Attachment" vulnerability. | ||||
CVE-2001-1273 | 2 Linux, Redhat | 2 Linux Kernel, Linux | 2025-04-03 | N/A |
The "mxcsr P4" vulnerability in the Linux kernel before 2.2.17-14, when running on certain Intel CPUs, allows local users to cause a denial of service (system halt). | ||||
CVE-2006-4022 | 1 Intel | 1 2100 Proset Wireless | 2025-04-03 | N/A |
Intel 2100 PRO/Wireless Network Connection driver PROSet before 7.1.4.6 allows local users to corrupt memory and execute code via "requests for capabilities from higher-level protocol drivers or user-level applications" involving crafted frames, a different issue than CVE-2006-3992. | ||||
CVE-2000-0047 | 1 Yahoo | 1 Pager | 2025-04-03 | N/A |
Buffer overflow in Yahoo Pager/Messenger client allows remote attackers to cause a denial of service via a long URL within a message. |