Search Results (29862 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-1999-0218 1 Livingston Portmaster 1 Portmaster 2025-04-03 N/A
Livingston portmaster machines could be rebooted via a series of commands.
CVE-2000-0226 1 Microsoft 1 Internet Information Server 2025-04-03 N/A
IIS 4.0 allows attackers to cause a denial of service by requesting a large buffer in a POST or PUT command which consumes memory, aka the "Chunked Transfer Encoding Buffer Overflow Vulnerability."
CVE-2004-1210 1 Ipcop 1 Ipcop 2025-04-03 N/A
Cross-site scripting (XSS) vulnerability in proxylog.dat in IPCop 1.4.1 and possibly other versions, allows remote attackers to inject arbitrary web script or HTML via the (1) url or (2) part variables.
CVE-2000-0235 1 Freebsd 1 Freebsd 2025-04-03 N/A
Buffer overflow in the huh program in the orville-write package allows local users to gain root privileges.
CVE-2005-3066 1 Scriptsolutions 1 Perldiver 2025-04-03 N/A
Cross-site scripting (XSS) vulnerability in perldiver.pl in PerlDiver 1.x allows remote attackers to inject arbitrary web script or HTML via the query string. NOTE: this issue was originally disputed by the vendor, but it has since been acknowledged.
CVE-2000-0244 1 Citrix 2 Metaframe, Winframe 2025-04-03 N/A
The Citrix ICA (Independent Computing Architecture) protocol uses weak encryption (XOR) for user authentication.
CVE-2005-3076 1 Simplog 1 Simplog 2025-04-03 N/A
Simplog 0.9.1 might allow remote attackers to execute arbitrary SQL commands or trigger SQL error messages via invalid (1) pid, (2) blogid, (3) cid, or (4) m parameters to archive.php, or the (5) blogid parameter to blogadmin.php.
CVE-2006-4417 1 Xoops 1 Xoops 2025-04-03 N/A
SQL injection vulnerability in edituser.php in Xoops before 2.0.15 allows remote attackers to execute arbitrary SQL commands via the user_avatar parameter.
CVE-2006-4418 1 Wikepage 1 Wikepage 2025-04-03 N/A
Directory traversal vulnerability in index.php for Wikepage 2006.2a Opus 10 allows remote attackers to include arbitrary local files via the lng parameter, as demonstrated by inserting PHP code into a log file.
CVE-1999-0219 1 Cat Soft 1 Serv-u 2025-04-03 N/A
Buffer overflow in FTP Serv-U 2.5 allows remote authenticated users to cause a denial of service (crash) via a long (1) CWD or (2) LS (list) command.
CVE-2000-0262 1 Avm 1 Ken 2025-04-03 N/A
The AVM KEN! ISDN Proxy server allows remote attackers to cause a denial of service via a malformed request.
CVE-2006-4421 1 Yapig 1 Yapig 2025-04-03 N/A
Cross-site scripting (XSS) vulnerability in template/default/thanks_comment.php in Yet Another PHP Image Gallery (YaPIG) 0.95b allows remote attackers to inject arbitrary web script or HTML via the D_REFRESH_URL parameter.
CVE-1999-0221 1 Lucent 1 Ascend Routers 2025-04-03 N/A
Denial of service of Ascend routers through port 150 (remote administration).
CVE-2000-0275 1 Cryptocard 1 Cryptoadmin 2025-04-03 N/A
CRYPTOCard CryptoAdmin for PalmOS uses weak encryption to store a user's PIN number, which allows an attacker with access to the .PDB file to generate valid PT-1 tokens after cracking the PIN.
CVE-2005-3089 2 Mozilla, Redhat 2 Firefox, Enterprise Linux 2025-04-03 N/A
Firefox 1.0.6 allows attackers to cause a denial of service (crash) via a Proxy Auto-Config (PAC) script that uses an eval statement. NOTE: it is not clear whether an untrusted party has any role in triggering this issue, so it might not be a vulnerability.
CVE-2006-4425 1 Coinsoft Technologies 1 Phpcoin 2025-04-03 N/A
Multiple PHP remote file inclusion vulnerabilities in phpCOIN 1.2.3 allow remote attackers to execute arbitrary PHP code via the _CCFG[_PKG_PATH_INCL] parameter in coin_includes scripts including (1) api.php, (2) common.php, (3) core.php, (4) custom.php, (5) db.php, (6) redirect.php or (7) session_set.php. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
CVE-1999-0222 1 Cisco 1 Router 2025-04-03 N/A
Denial of service in Cisco IOS web server allows attackers to reboot the router using a long URL.
CVE-2005-3094 1 Avi Alkalay 1 Man Cgi 2025-04-03 N/A
Avi Alkalay man-cgi script allows remote attackers to execute arbitrary code via shell metacharacters in the topic parameter.
CVE-2000-0594 3 Caldera, Freebsd, Mandrakesoft 6 Openlinux Desktop, Openlinux Ebuilder, Openlinux Edesktop and 3 more 2025-04-03 N/A
BitchX IRC client does not properly cleanse an untrusted format string, which allows remote attackers to cause a denial of service via an invite to a channel whose name includes special formatting characters.
CVE-2005-3188 1 Nullsoft 1 Winamp 2025-04-03 N/A
Buffer overflow in Nullsoft Winamp 5.094 allows remote attackers to execute arbitrary code via (1) an m3u file containing a long line ending in .wma or (2) a pls file containing a long File1 value ending in .wma, a different vulnerability than CVE-2006-0476.