| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| The KDE klock program allows local users to unlock a session using malformed input. |
| QMS CrownNet Unix Utilities for 2060 allows root to log on without a password. |
| Hotmail allows Javascript to be executed via the HTML STYLE tag, allowing remote attackers to execute commands on the user's Hotmail account. |
| GWWEB.EXE in GroupWise Web Access 5.5, and possibly other versions, allows remote attackers to determine the full pathname of the web server via an HTTP request with an invalid HTMLVER parameter. |
| Internet Explorer 4.01 allows remote attackers to read local files and spoof web pages via a "%01" character in an "about:" Javascript URL, which causes Internet Explorer to use the domain specified after the character. |
| Denial of service in Compaq Management Agents and the Compaq Survey Utility via a long string sent to port 2301. |
| Denial of service in HP-UX SharedX recserv program. |
| KDE kppp allows local users to create a directory in an arbitrary location via the HOME environmental variable. |
| Denial of service in Oracle TNSLSNR SQL*Net Listener via a malformed string to the listener port, aka NERP. |
| FTP PASV "Pizza Thief" denial of service and unauthorized data access. Attackers can steal data by connecting to a port that was intended for use by a client. |
| ROUTERmate has a default SNMP community name which allows remote attackers to modify its configuration. |
| Buffer overflow in AIX ftpd in the libc library. |
| The NIS+ rpc.nisd server allows remote attackers to execute certain RPC calls without authentication to obtain system information, disable logging, or modify caches. |
| FreeBSD T/TCP Extensions for Transactions can be subjected to spoofing attacks. |
| NIS finger allows an attacker to conduct a denial of service via a large number of finger requests, resulting in a large number of NIS queries. |
| The GetFile.cfm file in Allaire Forums allows remote attackers to read files through a parameter to GetFile.cfm. |
| Buffer overflow in Solaris dtprintinfo program. |
| The Netscape Directory Server installation procedure leaves sensitive information in a file that is accessible to local users. |
| The Motorola CableRouter allows any remote user to connect to and configure the router on port 1024. |
| Denial of service in Samba NETBIOS name service daemon (nmbd). |