CVE Tracker
74,828 total CVEsLive vulnerability feed from the National Vulnerability Database
In Sun Solaris and SunOS, man and catman contain vulnerabilities that allow overwriting arbitrary files.
rpc.pcnfsd in HP gives remote root access by changing the permissions on the main printer spool directory.
By default, IIS 4.0 has a virtual directory /IISADMPWD which contains files that can be used as proxies for brute force password attacks, or to identify valid users on the system.
Buffer overflows in wuarchive ftpd (wu-ftpd) and ProFTPD lead to remote root access, a.k.a. palmetto.
NetBSD netstat command allows local users to access kernel memory.
In some cases, Service Pack 4 for Windows NT 4.0 can allow access to network shares using a blank password, through a problem with a null NT hash value.
Race condition in the db_loader program in ClearCase gives local users root access by setting SUID bits.
Windows 95 and Windows 98 systems, when configured with multiple TCP/IP stacks bound to the same MAC address, allow remote attackers to cause a denial of service (traffic amplification) via a certain ICMP echo (ping) packet, which causes all stacks to send a ping response, aka TCP Chorusing.
nobo 1.2 allows remote attackers to cause a denial of service (crash) via a series of large UDP packets.
The metamail package allows remote command execution using shell metacharacters that are not quoted in a mailcap entry.
Internet Explorer 4 allows remote attackers (malicious web site operators) to read the contents of the clipboard via the Internet WebBrowser ActiveX object.
IPswitch WS_FTP allows local users to gain additional privileges and modify or add mail accounts by setting the "flags" registry key to 1920.
ACC Tigris allows public access without a login.
SuSE 5.2 PLP lpc program has a buffer overflow that leads to root compromise.
WS_FTP server remote denial of service through cwd command.
Local users can perform a denial of service in Alpha Linux, using MILO to force a reboot.
A bug in Cyrix CPUs on Linux allows local users to perform a denial of service.
Buffer overflow in the "Super" utility in Debian GNU/Linux, and other operating systems, allows local users to execute commands as root.
Digital Unix 4.0 has a buffer overflow in the inc program of the mh package.
FTP PASV "Pizza Thief" denial of service and unauthorized data access. Attackers can steal data by connecting to a port that was intended for use by a client.
The WinGate proxy is installed without a password, which allows remote attackers to redirect connections without authentication.
MS Site Server 2.0 with IIS 4 can allow users to upload content, including ASP, to the target web site, thus allowing them to execute commands remotely.
The debug option in Caldera Linux smail allows remote attackers to execute commands via shell metacharacters in the -D option for the rmail command.
netstation.navio-com.rte 1.1.0.1 configuration script for Navio NC on IBM AIX exports /tmp over NFS as world-readable and world-writable.
Buffer overflow in Solaris lpstat via class argument allows local users to gain root access.
Showing 73976-74000 of 74,828 CVEs