Search Results (29815 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-1999-0628 4 Freebsd, Ibm, Linux and 1 more 4 Freebsd, Aix, Linux Kernel and 1 more 2025-04-03 N/A
The rwho/rwhod service is running, which exposes machine status and user information.
CVE-2005-2074 1 Php Fusion 1 Php Fusion 2025-04-03 N/A
Cross-site scripting (XSS) vulnerability in PHP-Fusion 6.0.105 allows remote attackers to inject arbitrary web script or HTML via a news or article post, possibly involving the (1) news_body, (2) article_description, or (3) article_body parameters to submit.php.
CVE-2006-0662 1 Ibm 1 Lotus Domino Inotes Client 2025-04-03 N/A
Cross-site scripting (XSS) vulnerability in Lotus Domino iNotes Client 6.5.4 allows remote attackers to inject arbitrary web script or HTML via email with attached html files, which are directly rendered in the browser.
CVE-2000-0364 1 Redhat 1 Linux 2025-04-03 N/A
screen and rxvt in Red Hat Linux 6.0 do not properly set the modes of tty devices, which allows local users to write to other ttys.
CVE-1999-0630 2025-04-03 N/A
The NT Alerter and Messenger services are running.
CVE-2005-2653 1 Bbcaffe 1 Bbcaffe 2025-04-03 N/A
Cross-site scripting (XSS) vulnerability in BBCaffe 2.0 allows remote attackers to inject arbitrary web script or HTML via e-mail data in a message.
CVE-1999-0636 2025-04-03 N/A
The discard service is running.
CVE-1999-0651 2025-04-03 N/A
The rsh/rlogin service is running.
CVE-2000-0370 1 Caldera 1 Openlinux 2025-04-03 N/A
The debug option in Caldera Linux smail allows remote attackers to execute commands via shell metacharacters in the -D option for the rmail command.
CVE-2002-2174 1 Software602 1 602pro Lan Suite 2025-04-03 N/A
The Telnet proxy of 602Pro LAN SUITE 2002 does not restrict the number of outstanding connections to the local host, which allows remote attackers to create a denial of service (memory consumption) via a large number of connections.
CVE-2003-0489 1 Michael C. Toren 1 Tcptraceroute 2025-04-03 N/A
tcptraceroute 1.4 and earlier does not fully drop privileges after obtaining a file descriptor for capturing packets, which may allow local users to gain access to the descriptor via a separate vulnerability in tcptraceroute.
CVE-2005-1853 1 University Of Minnesota 1 Gopher 2025-04-03 N/A
gopher.c in the Gopher client 3.0.5 does not properly create temporary files, which allows local users to gain privileges.
CVE-2005-1908 1 Perception 1 Liteweb 2025-04-03 N/A
Perception LiteWeb allows remote attackers to bypass access controls for files via an extra leading / (slash) or leading \ (backslash) in the URL.
CVE-2006-0215 1 Qualityebiz 1 Quality Ppc 2025-04-03 N/A
Cross-site scripting (XSS) vulnerability in admin.php in QualityEBiz Quality PPC (QPPC) 1.0 build 1644 allows remote attackers to inject arbitrary web script or HTML via the cpage parameter. NOTE: this issue might be resultant from CVE-2006-0216.
CVE-2000-0372 1 Caldera 1 Openlinux 2025-04-03 N/A
Vulnerability in Caldera rmt command in the dump package 0.4b4 allows a local user to gain root privileges.
CVE-1999-0657 2025-04-03 N/A
WinGate is being used.
CVE-2000-1237 1 Floosietek 1 Ftgate 2025-04-03 N/A
The POP3 server in FTGate returns an -ERR code after receiving an invalid USER request, which makes it easier for remote attackers to determine valid usernames and conduct brute force password guessing.
CVE-2002-2027 1 Doow 1 Doow 2025-04-03 N/A
Database of Our Owlish Wisdom (DOOW) 0.1 through 0.2.1 does not properly verify user permissions, which allows remote attackers to perform unauthorized activities.
CVE-1999-0663 2025-04-03 N/A
A system-critical program, library, or file has a checksum or other integrity measurement that indicates that it has been modified.
CVE-1999-0665 2025-04-03 N/A
An application-critical Windows NT registry key has an inappropriate value.