radar

ONE Sentinel

shield

CVE Tracker

142,849 total CVEs

Live vulnerability feed from the National Vulnerability Database

9.8

The default permissions of /dev/kmem in Linux versions before 2.0.36 allows IP spoofing.

5.0

When the Microsoft SMTP service attempts to send a message to a server and receives a 4xx error code, it quickly and repeatedly attempts to redeliver the message, causing a denial of service.

5.0

In Linux before version 2.0.36, remote attackers can spoof a TCP connection and pass data to the application layer before fully establishing the connection.

7.2

A buffer overflow in the SGI X server allows local users to gain root access through the X server font path.

5.0

Microsoft Personal Web Server and FrontPage Personal Web Server in some Windows systems allows a remote attacker to read files on the server by using a nonstandard URL.

5.0

Netmanager Chameleon SMTPd has several buffer overflows that cause a crash.

2.1

Solaris syslogd crashes when receiving a message from a host that doesn't have an inverse DNS entry.

5.0

Denial of service in Cisco IOS web server allows attackers to reboot the router using a long URL.

5.0

Denial of service of Ascend routers through port 150 (remote administration).

7.2

super 3.11.6 and other versions have a buffer overflow in the syslog utility which allows a local user to gain root access.

2.1

OpenBSD crash using nlink value in FFS and EXT2FS filesystems.

10.0

Files created from interactive shell sessions in Cobalt RaQ microservers (e.g. .bash_history) are world readable, and thus are accessible from the web server.

4.6

SLMail 3.1 and 3.2 allows local users to access any file in the NTFS file system when the Remote Administration Service (RAS) is enabled by setting a user's Finger File to point to the target file, then running finger on the user.

7.2

Vulnerability in HP Camera component of HP DCE/9000 in HP-UX 9.x allows attackers to gain root privileges.

2.1

Buffer overflow in OpenBSD ping.

5.0

Remote attackers can perform a denial of service in WinGate machines using a buffer overflow in the Winsock Redirector Service.

7.5

Microsoft Taskpads allows remote web sites to execute commands on the visiting user's machine via certain methods that are marked as Safe for Scripting.

5.0

InterScan VirusWall for Solaris doesn't scan files for viruses when a single HTTP request includes two GET commands.

5.0

Process table attack in Unix systems allows a remote attacker to perform a denial of service by filling a machine's process tables through multiple connections to network services.

10.0

ARCserve NT agents use weak encryption (XOR) for passwords, which allows remote attackers to sniff the authentication request to port 6050 and decrypt the password.

7.2

install.iss installation script for Internet Security Scanner (ISS) for Linux, version 5.3, allows local users to change the permissions of arbitrary files via a symlink attack on a temporary file.

4.6

Local users in Windows NT can obtain administrator privileges by changing the KnownDLLs list to reference malicious programs.

7.2

SVGAlib zgv 3.0-7 and earlier allows local users to gain root access via a privilege leak of the iopl(3) privileges to child processes.

4.6

Triactive Remote Manager with Basic authentication enabled stores the username and password in cleartext in registry keys, which could allow local users to gain privileges.

5.0

Hyperseek allows remote attackers to modify the hyperseek configuration by directly calling the admin.cgi program with an edit_file action parameter.

Showing 141951-141975 of 142,849 CVEs