Cisco Cache Engine allows an attacker to replace content in the cache.
The web administration interface for Cisco Cache Engine allows remote attackers to view performance statistics.
Buffer overflow in the POP server POProxy for the Norton Anti-Virus protection NAV2000 program via a large USER command.
Groupwise web server GWWEB.EXE allows remote attackers to read arbitrary files with .htm extensions via a .. (dot dot) a
Groupwise web server GWWEB.EXE allows remote attackers to determine the real path of the web server via the HELP paramet
DNS PRO allows remote attackers to conduct a denial of service via a large number of connections.
Lotus Domino HTTP server does not properly disable anonymous access for the cgi-bin directory.
Buffer overflow in Lotus Domino HTTP server allows remote attackers to cause a denial of service via a long URL.
IIS 4.0 and Site Server 3.0 allow remote attackers to read source code for ASP files if the file is in a virtual directo
Quake 1 server responds to an initial UDP game connection request with a large amount of traffic, which allows remote at
Sendmail before 8.10.0 allows remote attackers to cause a denial of service by sending a series of ETRN commands then di
Solaris dmispd dmi_cmd allows local users to fill up restricted disk space by adding files to the /var/dmi/db database.
Netscape 4.7 records user passwords in the preferences.js file during an IMAP or POP session, even if the user has not e
Outlook Express 5 for Macintosh downloads attachments to HTML mail without prompting the user, aka the "HTML Mail Attach
RealMedia server allows remote attackers to cause a denial of service via a long ramgen request.
InterScan VirusWall SMTP scanner does not properly scan messages with malformed attachments.
Buffer overflow in aVirt Rover POP3 server 1.1 allows remote attackers to cause a denial of service via a long user name
Denial of service in Savant web server via a null character in the requested URL.
Macintosh systems generate large ICMP datagrams in response to malformed datagrams, allowing them to be used as amplifie
Trend Micro PC-Cillin does not restrict access to its internal proxy port, allowing remote attackers to conduct a denial
AltaVista search engine allows remote attackers to read files above the document root via a .. (dot dot) in the query.cg
ip_input.c in BSD-derived TCP/IP implementations allows remote attackers to cause a denial of service (crash or hang) vi
IIS 2.0 and 3.0 allows remote attackers to read the source code for ASP pages by appending a . (dot) to the end of the U
Memory leak in SNMP agent in Windows NT 4.0 before SP5 allows remote attackers to conduct a denial of service (memory ex
IIS 3.0 and 4.0 on x86 and Alpha allows remote attackers to cause a denial of service (hang) via a malformed GET request
Microsoft Exchange Server 5.5 and 5.0 does not properly handle (1) malformed NNTP data, or (2) malformed SMTP data, whic
Windows 95, when Remote Administration and File Sharing for NetWare Networks is enabled, creates a share (C$) when an ad
Windows NT 4.0 allows remote attackers to cause a denial of service (crash) via extra source routing data such as (1) a
FTP service in IIS 4.0 and earlier allows remote attackers to cause a denial of service (resource exhaustion) via many p
Tcpip.sys in Windows NT 4.0 before SP4 allows remote attackers to cause a denial of service via an ICMP Subnet Mask Addr
Directory traversal vulnerability in nph-publish before 1.2 allows remote attackers to overwrite arbitrary files via a .
Netbt.sys in Windows NT 4.0 allows remote malicious DNS servers to cause a denial of service (crash) by returning 0.0.0.
IIS 3.0 allows remote attackers to cause a denial of service via a request to an ASP page in which the URL contains a la
An interaction between the AS/400 shared folders feature and Microsoft SNA Server 3.0 and earlier allows users to view e
Vulnerability in Analog 3.0 and earlier allows remote attackers to read arbitrary files via the forms interface.
Vulnerability when Network Address Translation (NAT) is enabled in Linux 2.2.10 and earlier with ipchains, or FreeBSD 3.
DNS allows remote attackers to use DNS name servers as traffic amplifiers via a UDP DNS query with a spoofed source addr
genkey utility in Alibaba 2.0 generates RSA key pairs with an exponent of 1, which results in transactions that are sent
The Winmsdp.exe sample file in IIS 4.0 and Site Server 3.0 allows remote attackers to read arbitrary files.
thttpd HTTP server 2.03 and earlier allows remote attackers to read arbitrary files via a GET request with more than one
Vulnerability in bb-hist.sh CGI History module in Big Brother 1.09b and 1.09c allows remote attackers to read portions o
Internet Explorer 4.0 allows remote attackers to read arbitrary text and HTML files on the user's machine via a small IF
When a Web site redirects the browser to another site, Internet Explorer 3.02 and 4.0 automatically resends authenticati
Squid 2.2.STABLE5 and below, when using external authentication, allows attackers to bypass access controls via a newlin
sdrd daemon in IBM SP2 System Data Repository (SDR) allows remote attackers to read files without authentication.
The default setting for the Winlogon key entry ShutdownWithoutLogon in Windows NT allows users with physical access to s
The Forms 2.0 ActiveX control (included with Visual Basic for Applications 5.0) can be used to read text from a user's c
DataLynx suGuard trusts the PATH environment variable to execute the ps command, allowing local users to execute command
In some instances of SSH 1.2.27 and 2.0.11 on Linux systems, SSH will allow users with expired accounts to login.
A Windows NT system's registry audit policy does not log an event success or failure for security-critical registry keys
Scan for 1999 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started