TROYANOSYVIRUS

CVE Schwachstellen

CVE-Datenbank angereichert mit CISA KEV und NVD Daten

Gesamt: 333,971 CVEs
CVE IDCVSSSchweregradKEVSichtungen
CVE-1999-1533

Eicon Technology Diva LAN ISDN modem allows a remote attacker to cause a denial of service (hang) via a long password argument to the login.htm file in its HTTP service.

N/ANONE0
CVE-1999-0821

FreeBSD seyon allows local users to gain privileges by providing a malicious program in the -emulator argument.

N/ANONE0
CVE-1999-0863

Buffer overflow in FreeBSD seyon via HOME environmental variable, -emulator argument, -modems argument, or the GUI.

N/ANONE0
CVE-1999-1530

cgiwrap as used on Cobalt RaQ 2.0 and RaQ 3i does not properly identify the user for running certain scripts, which allows a malicious site administrator to view or modify data located at another virt...

N/ANONE0
CVE-1999-1550

bigconf.conf in F5 BIG/ip 2.1.2 and earlier allows remote attackers to read arbitrary files by specifying the target file in the "file" parameter.

N/ANONE0
CVE-2026-3771

A vulnerability has been found in SourceCodester/janobe Resort Reservation System 1.0. This vulnerability affects unknown code of the file /accomodation.php. Such manipulation of the argument q leads ...

6.3MEDIUM0
CVE-2001-0679

A buffer overflow in InterScan VirusWall 3.23 and 3.3 allows a remote attacker to execute arbitrary code by sending a long HELO command to the server.

N/ANONE0
CVE-1999-0832

Buffer overflow in NFS server on Linux allows attackers to execute commands via a long pathname.

N/ANONE0
CVE-1999-0983

Whois Internic Lookup program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry.

N/ANONE0
CVE-1999-0984

Matt's Whois program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry.

N/ANONE0
CVE-1999-0985

CC Whois program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry.

N/ANONE0
CVE-1999-1111

Vulnerability in StackGuard before 1.21 allows remote attackers to bypass the Random and Terminator Canary security mechanisms by using a non-linear attack which directly modifies a pointer to a retur...

N/ANONE0
CVE-1999-1112

Buffer overflow in IrfanView32 3.07 and earlier allows attackers to execute arbitrary commands via a long string after the "8BPS" image type in a Photo Shop image header.

N/ANONE0
CVE-1999-0833

Buffer overflow in BIND 8.2 via NXT records.

N/ANONE0
CVE-1999-0835

Denial of service in BIND named via malformed SIG records.

N/ANONE0
CVE-1999-0837

Denial of service in BIND by improperly closing TCP sessions via so_linger.

N/ANONE0
CVE-1999-0848

Denial of service in BIND named via consuming more than "fdmax" file descriptors.

N/ANONE0
CVE-1999-0849

Denial of service in BIND named via maxdname.

N/ANONE0
CVE-1999-0851

Denial of service in BIND named via naptr.

N/ANONE0
CVE-1999-1511

Buffer overflows in Xtramail 1.11 allow attackers to cause a denial of service (crash) and possibly execute arbitrary commands via (1) a long PASS command in the POP3 service, (2) a long HELO command ...

N/ANONE0
CVE-1999-1539

Buffer overflow in FTP server in QPC Software's QVT/Term Plus versions 4.2d and 4.3 and QVT/Net 4.3 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a...

N/ANONE0
CVE-2000-0329

A Microsoft ActiveX control allows a remote attacker to execute a malicious cabinet file via an attachment and an embedded script in an HTML mail, aka the "Active Setup Control" vulnerability.

N/ANONE0
CVE-2006-3609

Cross-site scripting (XSS) vulnerability in index.php in Orbitcoders OrbitMATRIX 1.0 allows remote attackers to inject arbitrary web script or HTML via the page_name parameter with an IMG tag containi...

N/ANONE0
CVE-1999-1050

Directory traversal vulnerability in Matt Wright FormHandler.cgi script allows remote attackers to read arbitrary files via (1) a .. (dot dot) in the reply_message_attach attachment parameter, or (2) ...

N/ANONE0
CVE-2000-0330

The networking software in Windows 95 and Windows 98 allows remote attackers to execute commands via a long file name string, aka the "File Access URL" vulnerability.

N/ANONE0
CVE-2000-0165

The Delegate application proxy has several buffer overflows which allow a remote attacker to execute commands.

N/ANONE0
CVE-1999-1110

Windows Media Player ActiveX object as used in Internet Explorer 5.0 returns a specific error code when a file does not exist, which allows remote malicious web sites to determine the existence of fil...

N/ANONE0
CVE-1999-1528

ProSoft Netware Client 5.12 on Macintosh MacOS 9 does not automatically log a user out of the NDS tree when the user logs off the system, which allows other users of the same system access to the unpr...

N/ANONE0
CVE-1999-1190

Buffer overflow in POP3 server of Admiral Systems EmailClub 1.05 allows remote attackers to execute arbitrary commands via a long "From" header in an e-mail message.

N/ANONE0
CVE-2006-3610

index.php in Orbitcoders OrbitMATRIX 1.0 allows remote attackers to obtain sensitive information (partial database schema) via a modified page_name parameter, which reflects portions of an SQL query i...

N/ANONE0
CVE-1999-1051

Default configuration in Matt Wright FormHandler.cgi script allows arbitrary directories to be used for attachments, and only restricts access to the /etc/ directory, which allows remote attackers to ...

N/ANONE0
CVE-1999-1457

Buffer overflow in thttpd HTTP server before 2.04-31 allows remote attackers to execute arbitrary commands via a long date string, which is not properly handled by the tdate_parse function.

N/ANONE0
CVE-1999-1508

Web server in Tektronix PhaserLink Printer 840.0 and earlier allows a remote attacker to gain administrator access by directly calling undocumented URLs such as ncl_items.html and ncl_subjects.html.

N/ANONE0
CVE-1999-1549

Lynx 2.x does not properly distinguish between internal and external HTML, which may allow a local attacker to read a "secure" hidden form value from a temporary file and craft a LYNXOPTIONS: URL that...

7.8HIGH0
CVE-1999-0793

Internet Explorer allows remote attackers to read files by redirecting data to a Javascript applet.

N/ANONE0
CVE-1999-1092

tin 1.40 creates the .tin directory with insecure permissions, which allows local users to read passwords from the .inputhistory file.

N/ANONE0
CVE-1999-1519

Gene6 G6 FTP Server 2.0 allows a remote attacker to cause a denial of service (resource exhaustion) via a long (1) user name or (2) password.

N/ANONE0
CVE-2000-0073

Buffer overflow in Microsoft Rich Text Format (RTF) reader allows attackers to cause a denial of service via a malformed control word.

N/ANONE0
CVE-1999-0987

Windows NT does not properly download a system policy if the domain user logs into the domain with a space at the end of the domain name.

N/ANONE0
CVE-2000-0352

Pine before version 4.21 does not properly filter shell metacharacters from URLs, which allows remote attackers to execute arbitrary commands via a malformed URL.

N/ANONE0
CVE-1999-0831

Denial of service in Linux syslogd via a large number of connections.

N/ANONE0
CVE-1999-0999

Microsoft SQL 7.0 server allows a remote attacker to cause a denial of service via a malformed TDS packet.

N/ANONE0
CVE-1999-1475

ProFTPd 1.2 compiled with the mod_sqlpw module records user passwords in the wtmp log file, which allows local users to obtain the passwords and gain privileges by reading wtmp, e.g. via the last comm...

N/ANONE0
CVE-1999-0818

Buffer overflow in Solaris kcms_configure via a long NETPATH environmental variable.

N/ANONE0
CVE-1999-1058

Buffer overflow in Vermillion FTP Daemon VFTPD 1.23 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via several long CWD commands.

N/ANONE0
CVE-1999-1527

Internal HTTP server in Sun Netbeans Java IDE in Netbeans Developer 3.0 Beta and Forte Community Edition 1.0 Beta does not properly restrict access to IP addresses as specified in its configuration, w...

N/ANONE0
CVE-2000-0531

Linux gpm program allows local users to cause a denial of service by flooding the /dev/gpmctl device with STREAM sockets.

N/ANONE0
CVE-1999-0844

Denial of service in MDaemon WorldClient and WebConfig services via a long URL.

N/ANONE0
CVE-1999-1163

Vulnerability in HP Series 800 S/X/V Class servers allows remote attackers to gain access to the S/X/V Class console via the Service Support Processor (SSP) Teststation.

N/ANONE0
CVE-1999-1189

Buffer overflow in Netscape Navigator/Communicator 4.7 for Windows 95 and Windows 98 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long argument ...

N/ANONE0
Seite 243 von 6680

This product uses data from the NVD API but is not endorsed or certified by the NVD.