genfilt in the AIX Packet Filtering Module does not properly filter traffic to destination ports greater than 32767.
Buffer overflow in Skyfull mail server via MAIL FROM command.
Internet Explorer 4.x or 5.x with Word 97 allows arbitrary execution of Visual Basic programs to the IE client through t
AN-HTTPd provides example CGI scripts test.bat, input.bat, input2.bat, and envout.bat, which allow remote attackers to e
Buffer overflow in IBM HomePagePrint 1.0.7 for Windows98J allows a malicious Web site to execute arbitrary code on a vie
Palm Pilot HotSync Manager 3.0.4 in Windows 98 allows remote attackers to cause a denial of service, and possibly execut
A buffer overflow exists in the HELO command in Trend Micro Interscan VirusWall SMTP gateway 3.23/3.3 for NT, which may
Eicon Technology Diva LAN ISDN modem allows a remote attacker to cause a denial of service (hang) via a long password ar
Whois Internic Lookup program whois.cgi allows remote attackers to execute commands via shell metacharacters in the doma
Matt's Whois program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry.
CC Whois program whois.cgi allows remote attackers to execute commands via shell metacharacters in the domain entry.
Vulnerability in StackGuard before 1.21 allows remote attackers to bypass the Random and Terminator Canary security mech
Buffer overflow in IrfanView32 3.07 and earlier allows attackers to execute arbitrary commands via a long string after t
Buffer overflow in BIND 8.2 via NXT records.
Buffer overflows in Xtramail 1.11 allow attackers to cause a denial of service (crash) and possibly execute arbitrary co
Buffer overflow in FTP server in QPC Software's QVT/Term Plus versions 4.2d and 4.3 and QVT/Net 4.3 allows remote attack
The Delegate application proxy has several buffer overflows which allow a remote attacker to execute commands.
Buffer overflow in thttpd HTTP server before 2.04-31 allows remote attackers to execute arbitrary commands via a long da
Buffer overflow in Vermillion FTP Daemon VFTPD 1.23 allows remote attackers to cause a denial of service, and possibly e
Internal HTTP server in Sun Netbeans Java IDE in Netbeans Developer 3.0 Beta and Forte Community Edition 1.0 Beta does n
Vulnerability in HP Series 800 S/X/V Class servers allows remote attackers to gain access to the S/X/V Class console via
Buffer overflow in Netscape Navigator/Communicator 4.7 for Windows 95 and Windows 98 allows remote attackers to cause a
Oracle Web Listener 2.1 allows remote attackers to bypass access restrictions by replacing a character in the URL with i
ORBit and esound in Red Hat Linux 6.1 do not use sufficiently random numbers, which allows local users to guess the auth
Buffer overflow in Internet Explorer 5 directshow filter (MSDXM.OCX) allows remote attackers to execute commands via the
Buffer overflow in Xshipwars xsw program.
htdig allows remote attackers to execute commands via filenames with shell metacharacters.
Modifications to ACLs (Access Control Lists) in Microsoft Exchange 5.5 do not take effect until the directory store cac
daynad program in Intel InBusiness E-mail Station does not require authentication, which allows remote attackers to modi
Buffer overflow in Infoseek Ultraseek search engine allows remote attackers to execute commands via a long GET request.
wu-ftp with FTP conversion enabled allows an attacker to execute commands via a malformed file name that is interpreted
glFtpD includes a default glftpd user account with a default password and a UID of 0.
The Expression Evaluator sample application in ColdFusion allows remote attackers to read or delete files on the server
The Expression Evaluator in the ColdFusion Application Server allows a remote attacker to upload files to the server via
Buffer overflow in CamShot WebCam HTTP server allows remote attackers to execute commands via a long GET request.
Multiple buffer overflows in ISC DHCP Distribution server (dhcpd) 1.0 and 2.0 allow a remote attacker to cause a denial
Microsoft Excel 97 does not warn the user before executing worksheet functions, which could allow attackers to execute a
Webmin before 0.5 does not restrict the number of invalid passwords that are entered for a valid username, which could a
Internet Explorer 4 treats a 32-bit number ("dotless IP address") in the a URL as the hostname instead of an IP address,
Buffer overflow in Internet Explorer 4.01 and earlier allows remote attackers to execute arbitrary commands via a long U
Cisco PIX Private Link 4.1.6 and earlier does not properly process certain commands in the configuration file, which red
HTTP Client application in ColdFusion allows remote attackers to bypass access restrictions for web pages on other ports
Windows NT 4.0 does not properly shut down invalid named pipe RPC connections, which allows remote attackers to cause a
Web Cache Control Protocol (WCCP) in Cisco Cache Engine for Cisco IOS 11.2 and earlier does not use authentication, whic
SystemSoft SystemWizard package in HP Pavilion PC with Windows 98, and possibly other platforms and operating systems, i
IIS 4.0 does not properly restrict access for the initial session request from a user's IP address if the address does n
Direct Mailer feature in Microsoft Site Server 3.0 saves user domain names and passwords in plaintext in the TMLBQueue n
Passfilt.dll in Windows NT SP2 allows users to create a password that contains the user's name, which could make it easi
automatic download option in ncftp 2.4.2 FTP client in Red Hat Linux 5.0 and earlier allows remote attackers to execute
Multiple buffer overflows in filter command in Elm 2.4 allows attackers to execute arbitrary commands via (1) long From:
Scan for 1999 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started