CVE Tracker
121,559 total CVEsLive vulnerability feed from the National Vulnerability Database
An SNMP community name is the default (e.g. public), null, or missing.
IP forwarding is enabled on a machine which is not a router or firewall.
A router or firewall allows source routed packets from arbitrary hosts.
A Windows NT local user or administrator account has a default, null, blank, or missing password.
A Windows NT local user or administrator account has a guessable password.
NETBIOS share information may be published through SNMP registry keys in NT.
A Windows NT 4.0 user can gain administrative rights by forcing NtOpenProcessToken to succeed regardless of the user's permissions, aka GetAdmin.
Jolt ICMP attack causes a denial of service in Windows 95 and Windows NT systems.
Denial of service in Windows NT DNS servers through malicious packet which contains a response to a query that wasn't made.
ICMP redirect messages may crash or lock up a host.
IIS 3.0 with the iis-fix hotfix installed allows remote intruders to read source code for ASP programs by using a %2e instead of a . (dot) in the URL.
Buffer overflow in listserv allows arbitrary command execution.
Denial of service in talk program allows remote attackers to disrupt a user's display.
Windows NT RSHSVC program allows remote users to execute arbitrary commands.
ScriptAlias directory in NCSA and Apache httpd allowed attackers to read CGI programs.
Malicious option settings in UDP packets could force a reboot in SunOS 4.1.3 systems.
Sendmail 8.6.9 allows remote attackers to execute root commands, using ident.
The GNU tar command, when used in FTP sessions, may allow an attacker to execute arbitrary commands.
A quote cwd command on FTP servers can reveal the full path of the home directory of the "ftp" user.
in.rshd allows users to login with a NULL username and execute commands.
Windows NT crashes or locks up when a Samba client executes a "cd .." command on a file share.
Buffer overflow in the win-c-sample program (win-c-sample.exe) in the WebSite web server 1.1e allows remote attackers to execute arbitrary code via a long query string.
FormMail CGI program can be used by web servers other than the host server that the program resides on.
Denial of service in syslog by sending it a large number of superfluous messages.
Remote attackers can mount an NFS file system in Ultrix or OSF, even if it is denied on the access list.
Showing 121351-121375 of 121,559 CVEs