Total
11483 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2010-0359 | 1 Zeus | 1 Zeus Web Server | 2010-01-20 | 10.0 HIGH | N/A |
Buffer overflow in the SSLv2 support in Zeus Web Server before 4.3r5 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a long string in an invalid Client Hello message. | |||||
CVE-2009-4500 | 1 Zabbix | 1 Zabbix | 2010-01-11 | 5.0 MEDIUM | N/A |
The process_trap function in trapper/trapper.c in Zabbix Server before 1.6.6 allows remote attackers to cause a denial of service (crash) via a crafted request with data that lacks an expected : (colon) separator, which triggers a NULL pointer dereference. | |||||
CVE-2009-3952 | 1 Adobe | 1 Illustrator | 2010-01-11 | 10.0 HIGH | N/A |
Buffer overflow in Adobe Illustrator CS3 13.0.3 and earlier and Illustrator CS4 14.0.0 allows attackers to execute arbitrary code via unspecified vectors. | |||||
CVE-2009-4476 | 1 Hauri | 1 Virobot Desktop | 2010-01-05 | 10.0 HIGH | N/A |
Stack-based buffer overflow in HAURI ViRobot Desktop 5.5 before 2009-09-28.00 allows remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by a certain module in VulnDisco Pack Professional 7.15 through 8.11. NOTE: some of these details are obtained from third party information. | |||||
CVE-2009-4482 | 1 Tversity | 1 Tversity | 2010-01-03 | 10.0 HIGH | N/A |
Buffer overflow in MediaServer.exe in TVersity 1.6 allows remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by the vd_tversity module in VulnDisco Pack Professional 8.11. NOTE: as of 20091229, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes. | |||||
CVE-2009-4501 | 1 Zabbix | 1 Zabbix | 2009-12-31 | 5.0 MEDIUM | N/A |
The zbx_get_next_field function in libs/zbxcommon/str.c in Zabbix Server before 1.6.8 allows remote attackers to cause a denial of service (crash) via a request that lacks expected separators, which triggers a NULL pointer dereference, as demonstrated using the Command keyword. | |||||
CVE-2009-4480 | 1 Azeotech | 1 Daqfactory | 2009-12-30 | 9.3 HIGH | N/A |
Buffer overflow in the web service in AzeoTech DAQFactory 5.77 might allow remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by a certain module in VulnDisco Pack Professional 7.16 through 8.11. NOTE: as of 20091229, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes. | |||||
CVE-2007-2280 | 1 Hp | 1 Openview Storage Data Protector | 2009-12-22 | 10.0 HIGH | N/A |
Stack-based buffer overflow in OmniInet.exe (aka the backup client service daemon) in the Application Recovery Manager component in HP OpenView Storage Data Protector 5.50 and 6.0 allows remote attackers to execute arbitrary code via an MSG_PROTOCOL command with long arguments, a different vulnerability than CVE-2009-3844. | |||||
CVE-2009-4361 | 1 Ibm | 1 Aix | 2009-12-21 | 7.2 HIGH | N/A |
Multiple buffer overflows in qoslist in IBM AIX 6.1 allow local users to cause a denial of service (application crash) or possibly gain privileges via a long string argument. NOTE: some of these details are obtained from third party information. | |||||
CVE-2009-4362 | 1 Ibm | 1 Aix | 2009-12-21 | 7.2 HIGH | N/A |
Multiple buffer overflows in qosmod in IBM AIX 6.1 allow local users to cause a denial of service (application crash) or possibly gain privileges via long string arguments. NOTE: some of these details are obtained from third party information. | |||||
CVE-2009-0898 | 1 Hp | 1 Openview Network Node Manager | 2009-12-18 | 10.0 HIGH | N/A |
Stack-based buffer overflow in HP OpenView Network Node Manager (OV NNM) 7.01, 7.51, and 7.53 allows remote attackers to execute arbitrary code via a crafted HTTP request. | |||||
CVE-2009-4265 | 1 Pointdev | 1 Ideal Administration 2009 | 2009-12-10 | 9.3 HIGH | N/A |
Stack-based buffer overflow in Ideal Administration 2009 9.7.1, and possibly other versions, allows remote attackers to execute arbitrary code via a long Computer value in an .ipj project file. | |||||
CVE-2009-4103 | 1 Robo-ftp | 1 Robo-ftp | 2009-11-29 | 9.3 HIGH | N/A |
Buffer overflow in Robo-FTP 3.6.17, and possibly other versions, allows remote FTP servers to cause a denial of service and possibly execute arbitrary code via unspecified FTP server responses. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | |||||
CVE-2008-3684 | 1 Emc | 1 Documentum Applicationxtender | 2009-11-22 | 10.0 HIGH | N/A |
Heap-based buffer overflow in aws_tmxn.exe in the Admin Agent service in the server in EMC Documentum ApplicationXtender Workflow, possibly 5.40 SP1 and earlier, allows remote attackers to execute arbitrary code via crafted packet data to TCP port 2606. | |||||
CVE-2005-4882 | 1 Philippe Jounin | 1 Tftpd32 | 2009-11-22 | 5.0 MEDIUM | N/A |
tftpd in Philippe Jounin Tftpd32 2.74 and earlier, as used in Wyse Simple Imager (WSI) and other products, allows remote attackers to cause a denial of service (daemon crash) via a long filename in a TFTP read (aka RRQ or get) request, a different vulnerability than CVE-2002-2226. | |||||
CVE-2009-3854 | 1 Ibm | 1 Tivoli Storage Manager | 2009-11-17 | 10.0 HIGH | N/A |
Buffer overflow in the traditional client scheduler in the client in IBM Tivoli Storage Manager (TSM) 5.3 before 5.3.6.7 and 5.4 before 5.4.2 allows remote attackers to execute arbitrary code via unspecified vectors. | |||||
CVE-2009-2832 | 1 Apple | 1 Mac Os X Server | 2009-11-16 | 5.1 MEDIUM | N/A |
Buffer overflow in FTP Server in Apple Mac OS X before 10.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a CWD command specifying a pathname in a deeply nested hierarchy of directories, related to a "CWD command line tool." | |||||
CVE-2009-2833 | 1 Apple | 2 Mac Os X, Mac Os X Server | 2009-11-16 | 7.5 HIGH | N/A |
Buffer overflow in the UCCompareTextDefault API in International Components for Unicode in Apple Mac OS X 10.5.8 allows context-dependent attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors. | |||||
CVE-2009-2824 | 1 Apple | 2 Mac Os X, Mac Os X Server | 2009-11-16 | 6.8 MEDIUM | N/A |
Multiple buffer overflows in Apple Type Services (ATS) in Apple Mac OS X 10.5.8 allow remote attackers to execute arbitrary code via a crafted embedded font in a document. | |||||
CVE-2009-2827 | 1 Apple | 2 Mac Os X, Mac Os X Server | 2009-11-16 | 6.8 MEDIUM | N/A |
Heap-based buffer overflow in Disk Images in Apple Mac OS X 10.5.8 allows user-assisted remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted FAT filesystem on a disk image. |