Common Vulnerabilities and Exposures (CVE) is a critical tool for maintaining software security, providing a standardized way to track and manage vulnerabilities across systems. Organizations should regularly monitor CVE databases, assess the impact of vulnerabilities, and apply patches promptly to reduce the risk of exploitation.
CVE (Common Vulnerabilities and Exposures) is a public database that provides a standardized method for identifying, tracking, and referencing publicly disclosed security vulnerabilities in software and hardware.
Each vulnerability receives a unique identifier called a CVE ID (e.g., CVE-2023-12345), making it easier to reference specific vulnerabilities across different tools and databases.
Total Search Results: 158437
CVE ID | Description | Severity | Published Date | Affected Vendor | Action |
---|---|---|---|---|---|
CVE-1999-1554 | /usr/sbin/Mail on SGI IRIX 3.3 and 3.3.1 does not properly set the group ID to the group ID of the user who started Mail, which allows local users to read the mail of other users. | Unknown | N/A | n/a | |
CVE-1999-1555 | Cheyenne InocuLAN Anti-Virus Server in Inoculan 4.0 before Service Pack 2 creates an update directory with "EVERYONE FULL CONTROL" permissions, which allows local users to cause Inoculan's antivirus update feature to install a Trojan horse dll. | Unknown | N/A | n/a | |
CVE-1999-1556 | Microsoft SQL Server 6.5 uses weak encryption for the password for the SQLExecutiveCmdExec account and stores it in an accessible portion of the registry, which could allow local users to gain privileges by reading and decrypting the CmdExecAccount value. | Unknown | N/A | n/a | |
CVE-1999-1557 | Buffer overflow in the login functions in IMAP server (imapd) in Ipswitch IMail 5.0 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a long user name or (2) a long password. | Unknown | N/A | n/a | |
CVE-1999-1558 | Vulnerability in loginout in Digital OpenVMS 7.1 and earlier allows unauthorized access when external authentication is enabled. | Unknown | N/A | n/a | |
CVE-1999-1559 | Xylan OmniSwitch before 3.2.6 allows remote attackers to bypass the login prompt via a CTRL-D (control d) character, which locks other users out of the switch because it only supports one session at a time. | Unknown | N/A | n/a | |
CVE-1999-1560 | Vulnerability in a script in Texas A&M University (TAMU) Tiger allows local users to execute arbitrary commands as the Tiger user, usually root. | Unknown | N/A | n/a | |
CVE-1999-1561 | Nullsoft SHOUTcast server stores the administrative password in plaintext in a configuration file (sc_serv.conf), which could allow a local user to gain administrative privileges on the server. | Unknown | N/A | n/a | |
CVE-1999-1562 | gFTP FTP client 1.13, and other versions before 2.0.0, records a password in plaintext in (1) the log window, or (2) in a log file. | Unknown | N/A | n/a | |
CVE-1999-1563 | Nachuatec D435 and D445 printer allows remote attackers to cause a denial of service via ICMP redirect storm. | Unknown | N/A | n/a | |
CVE-1999-1564 | FreeBSD 3.2 and possibly other versions allows a local user to cause a denial of service (panic) with a large number accesses of an NFS v3 mounted directory from a large number of processes. | Unknown | N/A | n/a | |
CVE-1999-1565 | Man2html 2.1 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file. | Unknown | N/A | n/a | |
CVE-1999-1566 | Buffer overflow in iParty server 1.2 and earlier allows remote attackers to cause a denial of service (crash) by connecting to default port 6004 and sending repeated extended characters. | Unknown | N/A | n/a | |
CVE-1999-1567 | Seapine Software TestTrack server allows a remote attacker to cause a denial of service (high CPU) via (1) TestTrackWeb.exe and (2) ttcgi.exe by connecting to port 99 and disconnecting without sending any data. | Unknown | N/A | n/a | |
CVE-1999-1568 | Off-by-one error in NcFTPd FTP server before 2.4.1 allows a remote attacker to cause a denial of service (crash) via a long PORT command. | Unknown | N/A | n/a | |
CVE-1999-1569 | Quake 1 and NetQuake servers allow remote attackers to cause a denial of service (resource exhaustion or forced disconnection) via a flood of spoofed UDP connection packets, which exceeds the server's player limit. | Unknown | N/A | n/a | |
CVE-1999-1570 | Buffer overflow in sar for OpenServer 5.0.5 allows local users to gain root privileges via a long -o parameter. | Unknown | N/A | n/a | |
CVE-1999-1571 | Buffer overflow in sar for SCO OpenServer 5.0.0 through 5.0.5 may allow local users to gain root privileges via a long -f parameter, a different vulnerability than CVE-1999-1570. | Unknown | N/A | n/a | |
CVE-1999-1572 | cpio on FreeBSD 2.1.0, Debian GNU/Linux 3.0, and possibly other operating systems, uses a 0 umask when creating files using the -O (archive) or -F options, which creates the files with mode 0666 and allows local users to read or overwrite those files. | Unknown | N/A | n/a | |
CVE-1999-1573 | Multiple unknown vulnerabilities in the "r-cmnds" (1) remshd, (2) rexecd, (3) rlogind, (4) rlogin, (5) remsh, (6) rcp, (7) rexec, and (8) rdist for HP-UX 10.00 through 11.00 allow attackers to gain privileges or access files. | Unknown | N/A | n/a | |
CVE-1999-1574 | Buffer overflow in the lex routines of nslookup for AIX 4.3 may allow attackers to cause a core dump and possibly execute arbitrary code via "long input strings." | Unknown | N/A | n/a | |
CVE-1999-1575 | The Kodak/Wang (1) Image Edit (imgedit.ocx), (2) Image Annotation (imgedit.ocx), (3) Image Scan (imgscan.ocx), (4) Thumbnail Image (imgthumb.ocx), (5) Image Admin (imgadmin.ocx), (6) HHOpen (hhopen.ocx), (7) Registration Wizard (regwizc.dll), and (8) IE Active Setup (setupctl.dll) ActiveX controls for Internet Explorer (IE) 4.01 and 5.0 are marked as "Safe for Scripting," which allows remote attackers to create and modify files and execute arbitrary commands. | Unknown | N/A | n/a | |
CVE-1999-1576 | Buffer overflow in Adobe Acrobat ActiveX control (pdf.ocx, PDF.PdfCtrl.1) 1.3.188 for Acrobat Reader 4.0 allows remote attackers to execute arbitrary code via the pdf.setview method. | Unknown | N/A | n/a | |
CVE-1999-1577 | Buffer overflow in HHOpen ActiveX control (hhopen.ocx) 1.0.0.1 for Internet Explorer 4.01 and 5 allows remote attackers to execute arbitrary commands via long arguments to the OpenHelp method. | Unknown | N/A | n/a | |
CVE-1999-1578 | Buffer overflow in Registration Wizard ActiveX control (regwizc.dll, InvokeRegWizard) 3.0.0.0 for Internet Explorer 4.01 and 5 allows remote attackers to execute arbitrary commands. | Unknown | N/A | n/a | |
CVE-1999-1579 | The Cenroll ActiveX control (xenroll.dll) for Terminal Server Editions of Windows NT 4.0 and Windows NT Server 4.0 before SP6 allows remote attackers to cause a denial of service (resource consumption) by creating a large number of arbitrary files on the target machine. | Unknown | N/A | n/a | |
CVE-1999-1580 | SunOS sendmail 5.59 through 5.65 uses popen to process a forwarding host argument, which allows local users to gain root privileges by modifying the IFS (Internal Field Separator) variable and passing crafted values to the -oR option. | Unknown | N/A | n/a | |
CVE-1999-1581 | Memory leak in Simple Network Management Protocol (SNMP) agent (snmp.exe) for Windows NT 4.0 before Service Pack 4 allows remote attackers to cause a denial of service (memory consumption) via a large number of SNMP packets with Object Identifiers (OIDs) that cannot be decoded. | Unknown | N/A | n/a | |
CVE-1999-1582 | By design, the "established" command on the Cisco PIX firewall allows connections from one host to arbitrary ports of a target host if an alternative conduit has already been allowed, which can cause administrators to configure less restrictive access controls than intended if they do not understand this functionality. | Unknown | N/A | n/a | |
CVE-1999-1583 | Buffer overflow in nslookup for AIX 4.3 allows local users to execute arbitrary code via a long hostname command line argument. | Unknown | N/A | n/a | |
CVE-1999-1584 | Unknown vulnerability in (1) loadmodule, and (2) modload if modload is installed with setuid/setgid privileges, in SunOS 4.1.1 through 4.1.3c, and Open Windows 3.0, allows local users to gain root privileges via environment variables, a different vulnerability than CVE-1999-1586. | Unknown | N/A | n/a | |
CVE-1999-1585 | The (1) rcS and (2) mountall programs in Sun Solaris 2.x, possibly before 2.4, start a privileged shell on the system console if fsck fails while the system is booting, which allows attackers with physical access to gain root privileges. | Unknown | 2005-08-30 | n/a | |
CVE-1999-1586 | loadmodule in SunOS 4.1.x, as used by xnews, does not properly sanitize its environment, which allows local users to gain privileges, a different vulnerability than CVE-1999-1584. | Unknown | N/A | n/a | |
CVE-1999-1587 | /usr/ucb/ps in Sun Microsystems Solaris 8 and 9, and certain earlier releases, allows local users to view the environment variables and values of arbitrary processes via the -e option. | Unknown | N/A | n/a | |
CVE-1999-1588 | Buffer overflow in nlps_server in Sun Solaris x86 2.4, 2.5, and 2.5.1 allows remote attackers to execute arbitrary code as root via a long string beginning with "NLPS:002:002:" to the listen (aka System V listener) port, TCP port 2766. | Unknown | 2006-04-21 | n/a | |
CVE-1999-1589 | Unspecified vulnerability in crontab in IBM AIX 3.2 allows local users to gain root privileges via unknown attack vectors. | Unknown | 2006-06-15 | n/a | |
CVE-1999-1590 | Directory traversal vulnerability in Muhammad A. Muquit wwwcount (Count.cgi) 2.3 allows remote attackers to read arbitrary GIF files via ".." sequences in the image parameter, a different vulnerability than CVE-1999-0021. | Unknown | 2006-12-03 | n/a | |
CVE-1999-1591 | Microsoft Internet Information Services (IIS) server 4.0 SP4, without certain hotfixes released for SP4, does not require authentication credentials under certain conditions, which allows remote attackers to bypass authentication requirements, as demonstrated by connecting via Microsoft Visual InterDev 6.0. | Unknown | 2007-07-05 | n/a | |
CVE-1999-1592 | Multiple unspecified vulnerabilities in sendmail 5, as installed on Sun SunOS 4.1.3_U1 and 4.1.4, have unspecified attack vectors and impact. NOTE: this might overlap CVE-1999-0129. | Unknown | 2007-07-12 | n/a | |
CVE-1999-1593 | Windows Internet Naming Service (WINS) allows remote attackers to cause a denial of service (connectivity loss) or steal credentials via a 1Ch registration that causes WINS to change the domain controller to point to a malicious server. NOTE: this problem may be limited when Windows 95/98 clients are used, or if the primary domain controller becomes unavailable. | Unknown | 2009-01-15 | n/a | |
CVE-2000-0001 | RealMedia server allows remote attackers to cause a denial of service via a long ramgen request. | Unknown | N/A | n/a | |
CVE-2000-0002 | Buffer overflow in ZBServer Pro 1.50 allows remote attackers to execute commands via a long GET request. | Unknown | N/A | n/a | |
CVE-2000-0003 | Buffer overflow in UnixWare rtpm program allows local users to gain privileges via a long environmental variable. | Unknown | N/A | n/a | |
CVE-2000-0004 | ZBServer Pro allows remote attackers to read source code for executable files by inserting a . (dot) into the URL. | Unknown | N/A | n/a | |
CVE-2000-0005 | HP-UX aserver program allows local users to gain privileges via a symlink attack. | Unknown | N/A | n/a | |
CVE-2000-0006 | strace allows local users to read arbitrary files via memory mapped file names. | Unknown | N/A | n/a | |
CVE-2000-0007 | Trend Micro PC-Cillin does not restrict access to its internal proxy port, allowing remote attackers to conduct a denial of service. | Unknown | N/A | n/a | |
CVE-2000-0008 | FTPPro allows local users to read sensitive information, which is stored in plain text. | Unknown | N/A | n/a | |
CVE-2000-0009 | The bna_pass program in Optivity NETarchitect uses the PATH environmental variable for finding the "rm" program, which allows local users to execute arbitrary commands. | Unknown | N/A | n/a | |
CVE-2000-0010 | WebWho+ whois.cgi program allows remote attackers to execute commands via shell metacharacters in the TLD parameter. | Unknown | N/A | n/a | |
CVE-2000-0011 | Buffer overflow in AnalogX SimpleServer:WWW HTTP server allows remote attackers to execute commands via a long GET request. | Unknown | N/A | n/a | |
CVE-2000-0012 | Buffer overflow in w3-msql CGI program in miniSQL package allows remote attackers to execute commands. | Unknown | N/A | n/a | |
CVE-2000-0013 | IRIX soundplayer program allows local users to gain privileges by including shell metacharacters in a .wav file, which is executed via the midikeys program. | Unknown | N/A | n/a | |
CVE-2000-0014 | Denial of service in Savant web server via a null character in the requested URL. | Unknown | N/A | n/a | |
CVE-2000-0015 | CascadeView TFTP server allows local users to gain privileges via a symlink attack. | Unknown | N/A | n/a | |
CVE-2000-0016 | Buffer overflow in Internet Anywhere POP3 Mail Server allows remote attackers to cause a denial of service or execute commands via a long username. | Unknown | N/A | n/a | |
CVE-2000-0017 | Buffer overflow in Linux linuxconf package allows remote attackers to gain root privileges via a long parameter. | Unknown | N/A | n/a | |
CVE-2000-0018 | wmmon in FreeBSD allows local users to gain privileges via the .wmmonrc configuration file. | Unknown | N/A | n/a | |
CVE-2000-0019 | IMail POP3 daemon uses weak encryption, which allows local users to read files. | Unknown | N/A | n/a | |
CVE-2000-0020 | DNS PRO allows remote attackers to conduct a denial of service via a large number of connections. | Unknown | N/A | n/a | |
CVE-2000-0021 | Lotus Domino HTTP server allows remote attackers to determine the real path of the server via a request to a non-existent script in /cgi-bin. | Unknown | N/A | n/a | |
CVE-2000-0022 | Lotus Domino HTTP server does not properly disable anonymous access for the cgi-bin directory. | Unknown | N/A | n/a | |
CVE-2000-0023 | Buffer overflow in Lotus Domino HTTP server allows remote attackers to cause a denial of service via a long URL. | Unknown | N/A | n/a | |
CVE-2000-0024 | IIS does not properly canonicalize URLs, potentially allowing remote attackers to bypass access restrictions in third-party software via escape characters, aka the "Escape Character Parsing" vulnerability. | Unknown | N/A | n/a | |
CVE-2000-0025 | IIS 4.0 and Site Server 3.0 allow remote attackers to read source code for ASP files if the file is in a virtual directory whose name includes extensions such as .com, .exe, .sh, .cgi, or .dll, aka the "Virtual Directory Naming" vulnerability. | Unknown | N/A | n/a | |
CVE-2000-0026 | Buffer overflow in UnixWare i2odialogd daemon allows remote attackers to gain root access via a long username/password authorization string. | Unknown | N/A | n/a | |
CVE-2000-0027 | IBM Network Station Manager NetStation allows local users to gain privileges via a symlink attack. | Unknown | N/A | n/a | |
CVE-2000-0028 | Internet Explorer 5.0 and 5.01 allows remote attackers to bypass the cross frame security policy and read files via the external.NavigateAndFind function. | Unknown | N/A | n/a | |
CVE-2000-0029 | UnixWare pis and mkpis commands allow local users to gain privileges via a symlink attack. | Unknown | N/A | n/a | |
CVE-2000-0030 | Solaris dmispd dmi_cmd allows local users to fill up restricted disk space by adding files to the /var/dmi/db database. | Unknown | N/A | n/a | |
CVE-2000-0031 | The initscripts package in Red Hat Linux allows local users to gain privileges via a symlink attack. | Unknown | N/A | n/a | |
CVE-2000-0032 | Solaris dmi_cmd allows local users to crash the dmispd daemon by adding a malformed file to the /var/dmi/db database. | Unknown | N/A | n/a | |
CVE-2000-0033 | InterScan VirusWall SMTP scanner does not properly scan messages with malformed attachments. | Unknown | N/A | n/a | |
CVE-2000-0034 | Netscape 4.7 records user passwords in the preferences.js file during an IMAP or POP session, even if the user has not enabled "remember passwords." | Unknown | N/A | n/a | |
CVE-2000-0035 | resend command in Majordomo allows local users to gain privileges via shell metacharacters. | Unknown | N/A | n/a | |
CVE-2000-0036 | Outlook Express 5 for Macintosh downloads attachments to HTML mail without prompting the user, aka the "HTML Mail Attachment" vulnerability. | Unknown | N/A | n/a | |
CVE-2000-0037 | Majordomo wrapper allows local users to gain privileges by specifying an alternate configuration file. | Unknown | N/A | n/a | |
CVE-2000-0038 | glFtpD includes a default glftpd user account with a default password and a UID of 0. | Unknown | N/A | n/a | |
CVE-2000-0039 | AltaVista search engine allows remote attackers to read files above the document root via a .. (dot dot) in the query.cgi CGI program. | Unknown | N/A | n/a | |
CVE-2000-0040 | glFtpD allows local users to gain privileges via metacharacters in the SITE ZIPCHK command. | Unknown | N/A | n/a | |
CVE-2000-0041 | Macintosh systems generate large ICMP datagrams in response to malformed datagrams, allowing them to be used as amplifiers in a flood attack. | Unknown | N/A | n/a | |
CVE-2000-0042 | Buffer overflow in CSM mail server allows remote attackers to cause a denial of service or execute commands via a long HELO command. | Unknown | N/A | n/a | |
CVE-2000-0043 | Buffer overflow in CamShot WebCam HTTP server allows remote attackers to execute commands via a long GET request. | Unknown | N/A | n/a | |
CVE-2000-0044 | Macros in War FTP 1.70 and 1.67b2 allow local or remote attackers to read arbitrary files or execute commands. | Unknown | N/A | n/a | |
CVE-2000-0045 | MySQL allows local users to modify passwords for arbitrary MySQL users via the GRANT privilege. | Unknown | N/A | n/a | |
CVE-2000-0046 | Buffer overflow in ICQ 99b 1.1.1.1 client allows remote attackers to execute commands via a malformed URL within an ICQ message. | Unknown | N/A | n/a | |
CVE-2000-0047 | Buffer overflow in Yahoo Pager/Messenger client allows remote attackers to cause a denial of service via a long URL within a message. | Unknown | N/A | n/a | |
CVE-2000-0048 | get_it program in Corel Linux Update allows local users to gain root access by specifying an alternate PATH for the cp program. | Unknown | N/A | n/a | |
CVE-2000-0049 | Buffer overflow in Winamp client allows remote attackers to execute commands via a long entry in a .pls file. | Unknown | N/A | n/a | |
CVE-2000-0050 | The Allaire Spectra Webtop allows authenticated users to access other Webtop sections by specifying explicit URLs. | Unknown | N/A | n/a | |
CVE-2000-0051 | The Allaire Spectra Configuration Wizard allows remote attackers to cause a denial of service by repeatedly resubmitting data collections for indexing via a URL. | Unknown | N/A | n/a | |
CVE-2000-0052 | Red Hat userhelper program in the usermode package allows local users to gain root access via PAM and a .. (dot dot) attack. | Unknown | N/A | n/a | |
CVE-2000-0053 | Microsoft Commercial Internet System (MCIS) IMAP server allows remote attackers to cause a denial of service via a malformed IMAP request. | Unknown | N/A | n/a | |
CVE-2000-0054 | search.cgi in the SolutionScripts Home Free package allows remote attackers to view directories via a .. (dot dot) attack. | Unknown | N/A | n/a | |
CVE-2000-0055 | Buffer overflow in Solaris chkperm command allows local users to gain root access via a long -n option. | Unknown | N/A | n/a | |
CVE-2000-0056 | IMail IMONITOR status.cgi CGI script allows remote attackers to cause a denial of service with many calls to status.cgi. | Unknown | N/A | n/a | |
CVE-2000-0057 | Cold Fusion CFCACHE tag places temporary cache files within the web document root, allowing remote attackers to obtain sensitive system information. | Unknown | N/A | n/a | |
CVE-2000-0058 | Network HotSync program in Handspring Visor does not have authentication, which allows remote attackers to retrieve email and files. | Unknown | N/A | n/a | |
CVE-2000-0059 | PHP3 with safe_mode enabled does not properly filter shell metacharacters from commands that are executed by popen, which could allow remote attackers to execute commands. | Unknown | N/A | n/a | |
CVE-2000-0060 | Buffer overflow in aVirt Rover POP3 server 1.1 allows remote attackers to cause a denial of service via a long user name. | Unknown | N/A | n/a |
vunerability-insight.com © 2023 - 2025. All Rights Reserved.
Vulnerability Data Repositories v