radar

ONE Sentinel

shield

CVE Tracker

121,295 total CVEs

Live vulnerability feed from the National Vulnerability Database

5.0

Denial of service in Ascend and 3com routers, which can be rebooted by sending a zero length TCP option.

5.0

Land IP denial of service.

7.5

Xyplex terminal server 6.0.1S1, and possibly other versions, allows remote attackers to bypass the password prompt by entering (1) a CTRL-Z character, or (2) a ? (question mark).

10.0

Automount daemon automountd allows local or remote users to gain privileges via shell metacharacters.

7.2

Vulnerability in scoterm in SCO OpenServer 5.0 and SCO Open Desktop/Open Server 3.0 allows local users to gain root privileges.

7.2

xterm in Digital UNIX 4.0B *with* patch kit 5 allows local users to overwrite arbitrary files via a symlink attack on a core dump file, which is created when xterm is called with a DISPLAY environmental variable set to a display that xterm cannot access.

6.2

Solaris Solstice AdminSuite (AdminSuite) 2.1 and 2.2 allows local users to gain privileges via the save option in the Database Manager, which is running with setgid bin privileges.

6.2

Solaris Solstice AdminSuite (AdminSuite) 2.1 and 2.2 create lock files insecurely, which allows local users to gain root privileges.

6.2

Solaris Solstice AdminSuite (AdminSuite) 2.1 follows symbolic links when updating an NIS database, which allows local users to overwrite arbitrary files.

6.2

Solaris Solstice AdminSuite (AdminSuite) 2.1 incorrectly sets write permissions on source files for NIS maps, which could allow local users to gain privileges by modifying /etc/passwd.

6.2

Solaris Solstice AdminSuite (AdminSuite) 2.1 uses unsafe permissions when adding new users to the NIS+ password table, which allows local users to gain root access by modifying their password table entries.

5.0

Directory traversal vulnerability in carbo.dll in iCat Carbo Server 3.0.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the icatcommand parameter.

7.5

Arbitrary command execution via buffer overflow in Count.cgi (wwwcount) cgi-bin program.

7.2

buffer overflow in HP xlock program.

10.0

Buffer overflow in the HTML library used by Internet Explorer, Outlook Express, and Windows Explorer via the res: local resource protocol.

7.2

SGI permissions program allows local users to gain root privileges.

2.1

SGI syserr program allows local users to corrupt files.

5.0

Denial of service of inetd on Linux through SYN and RST packets.

2.1

The open() function in FreeBSD allows local attackers to write to arbitrary files.

10.0

The AIX FTP client can be forced to execute commands from a malicious server through shell metacharacters (e.g. a pipe character).

4.6

AIX piodmgrsu command allows local users to gain additional group privileges.

7.2

AIX nslookup command allows local users to obtain root access by not dropping privileges correctly.

7.2

Various vulnerabilities in the AIX portmir command allows local users to obtain root access.

7.2

Buffer overflow in AIX writesrv command allows local users to obtain root access.

7.2

Buffer overflow in AIX libDtSvc library can allow local users to gain root access.

Showing 120876-120900 of 121,295 CVEs