Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by NVD-CWE-Other
Total 27865 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2002-1284 1 Kgpg 1 Kgpg 2017-10-09 4.6 MEDIUM N/A
The wizard in KGPG 0.6 through 0.8.2 does not properly provide the passphrase to gpg when creating new keys, which causes secret keys to be created with an empty passphrase and allows local attackers to steal the keys if they can be read.
CVE-2002-0275 1 Blueface 1 Falcon Web Server 2017-10-09 5.0 MEDIUM N/A
Falcon web server 2.0.0.1020 and earlier allows remote attackers to bypass authentication and read restricted files via an extra / (slash) in the requested URL.
CVE-2004-0131 1 Gnu 1 Radius 2017-10-09 5.0 MEDIUM N/A
The rad_print_request function in logger.c for GNU Radius daemon (radiusd) before 1.2 allows remote attackers to cause a denial of service (crash) via a UDP packet with an Acct-Status-Type attribute without a value and no Acct-Session-Id attribute, which causes a null dereference.
CVE-2001-0745 1 Netscape 1 Messanger 2017-10-09 5.0 MEDIUM N/A
Netscape 4.7x allows remote attackers to obtain sensitive information such as the user's login, mailbox location and installation path via Javascript that accesses the mailbox: URL in the document.referrer property.
CVE-2000-0556 1 Computalynx 1 Cmail 2017-10-09 5.0 MEDIUM N/A
Buffer overflow in the web interface for Cmail 2.4.7 allows remote attackers to cause a denial of service by sending a large user name to the user dialog running on port 8002.
CVE-2000-0557 1 Computalynx 1 Cmail 2017-10-09 10.0 HIGH N/A
Buffer overflow in the web interface for Cmail 2.4.7 allows remote attackers to execute arbitrary commands via a long GET request.
CVE-2001-0081 1 Ncipher 1 Ncipher 2017-10-09 5.0 MEDIUM N/A
swinit in nCipher does not properly disable the Operator Card Set recovery feature even when explicitly disabled by the user, which could allow attackers to gain access to application keys.
CVE-2001-0754 1 Cisco 1 Cbos 2017-10-09 5.0 MEDIUM N/A
Cisco CBOS 2.3.8 and earlier allows remote attackers to cause a denial of service via a series of large ICMP ECHO REPLY (ping) packets, which cause it to enter ROMMON mode and stop forwarding packets.
CVE-2000-0561 1 International Telecommunications 1 International Telecommunications Webbbs 2017-10-09 7.5 HIGH N/A
Buffer overflow in WebBBS 1.15 allows remote attackers to execute arbitrary commands via a long HTTP GET request.
CVE-1999-1201 1 Microsoft 2 Windows 95, Windows 98 2017-10-09 5.0 MEDIUM N/A
Windows 95 and Windows 98 systems, when configured with multiple TCP/IP stacks bound to the same MAC address, allow remote attackers to cause a denial of service (traffic amplification) via a certain ICMP echo (ping) packet, which causes all stacks to send a ping response, aka TCP Chorusing.
CVE-2001-0804 1 Valerie Mates 1 Interactive Story 2017-10-09 5.0 MEDIUM N/A
Directory traversal vulnerability in story.pl in Interactive Story 1.3 allows a remote attacker to read arbitrary files via a .. (dot dot) attack on the "next" parameter.
CVE-2000-0565 1 Mindstorm 1 Smartftp Daemon 2017-10-09 2.1 LOW N/A
SmartFTP Daemon 0.2 allows a local user to access arbitrary files by uploading and specifying an alternate user configuration file via a .. (dot dot) attack.
CVE-2001-0739 1 Engardelinux 1 Secure Linux 2017-10-09 7.2 HIGH N/A
Guardian Digital WebTool in EnGarde Secure Linux 1.0.1 allows restarted services to inherit some environmental variables, which could allow local users to gain root privileges.
CVE-2001-0641 3 Immunix, Redhat, Suse 3 Immunix, Linux, Suse Linux 2017-10-09 4.6 MEDIUM N/A
Buffer overflow in man program in various distributions of Linux allows local user to execute arbitrary code as group man via a long -S option.
CVE-1999-1099 1 Kth 1 Kth Kerberos 2017-10-09 5.0 MEDIUM N/A
Kerberos 4 allows remote attackers to obtain sensitive information via a malformed UDP packet that generates an error string that inadvertently includes the realm name and the last user.
CVE-1999-1204 1 Checkpoint 1 Firewall-1 2017-10-09 7.5 HIGH N/A
Check Point Firewall-1 does not properly handle certain restricted keywords (e.g., Mail, auth, time) in user-defined objects, which could produce a rule with a default "ANY" address and result in access to more systems than intended by the administrator.
CVE-2000-0569 1 Sybergen 1 Sygate 2017-10-09 5.0 MEDIUM N/A
Sybergen Sygate allows remote attackers to cause a denial of service by sending a malformed DNS UDP packet to its internal interface.
CVE-2000-0570 1 Centrinity 1 Firstclass Intranet Server 2017-10-09 5.0 MEDIUM N/A
FirstClass Internet Services server 5.770, and other versions before 6.1, allows remote attackers to cause a denial of service by sending an email with a long To: mail header.
CVE-2001-0867 1 Cisco 1 12000 Router 2017-10-09 7.5 HIGH N/A
Cisco 12000 with IOS 12.0 and line cards based on Engine 2 does not properly filter does not properly filter packet fragments even when the "fragment" keyword is used in an ACL, which allows remote attackers to bypass the intended access controls.
CVE-2000-0571 1 West Street Software 1 Localweb Http Server 2017-10-09 6.4 MEDIUM N/A
LocalWEB HTTP server 1.2.0 allows remote attackers to cause a denial of service via a long GET request.