Vulnerability in Mailman 2.0.1 and earlier allows list administrators to obtain user passwords.
Linux kernel 2.4 and 2.2 allows local users to read kernel memory and possibly gain privileges via a negative argument t
pmake before 2.1.35 in Turbolinux 6.05 and earlier is installed with setuid root privileges, which could allow local use
Windows 2000 allows local users to cause a denial of service and possibly gain privileges by setting a hardware breakpoi
Debugging utility in the backdoor mode of Palm OS 3.5.2 and earlier allows attackers with physical access to a Palm devi
MicroFocus Cobol 4.1, with the AppTrack feature enabled, installs the mfaslmf directory and the nolicense file with inse
Buffer overflow in dc20ctrl before 0.4_1 in FreeBSD, and possibly other operating systems, allows local users to gain pr
Vulnerability in OmniBackII A.03.50 in HP 11.x and earlier allows attackers to gain unauthorized access to an OmniBack c
bctool in Jetico BestCrypt 0.7 and earlier trusts the user-supplied PATH to find and execute an fsck utility program, wh
Multiple buffer overflows in programs used by scoadmin and sysadmsh in SCO OpenServer 5.0.6a and earlier allow local use
Buffer overflow in tt_printf function of rxvt 2.6.2 allows local users to gain privileges via a long (1) -T or (2) -name
Vulnerability in the newgrp program included with HP9000 servers running HP-UX 11.11 allows a local attacker to obtain h
TurboTax saves passwords in a temporary file when a user imports investment tax information from a financial institution
cvmlogin and statfile in Paul Jarc idtools before 2001.06.27 do not properly check the return value of a call to the pat
Microsoft Word before Word 2002 allows attackers to automatically execute macros without warning the user via a Rich Tex
fcheck prior to 2.57.59 calls the file signature checking program insecurely, which can allow a local user to run arbitr
The OpenPGP PGP standard allows an attacker to determine the private signature key via a cryptanalytic attack in which t
Directory traversal vulnerability in MySQL before 3.23.36 allows local users to modify arbitrary files and gain privileg
REDIPlus program, REDI.exe, stores passwords and user names in cleartext in the StartLog.txt log file, which allows loca
Buffer overflow in WinZip 8.0 allows attackers to execute arbitrary commands via a long file name that is processed by t
kdesu in kdelibs package creates world readable temporary files containing authentication info, which can allow local us
The split key mechanism used by PGP 7.0 allows a key share holder to obtain access to the entire key by setting the "Cac
OmniSecure HTTProtect 1.1.1 allows a superuser without omnish privileges to modify a protected file by creating a symbol
tcl/tk package (tcltk) 8.3.1 searches for its libraries in the current working directory before other directories, which
NetWin Authentication module (NWAuth) 2.0 and 3.0b, as implemented in SurgeFTP, DMail, and possibly other packages, uses
Microsoft Windows 2000 telnet service creates named pipes with predictable names and does not properly verify them, whic
Microsoft Word 2002 and earlier allows attackers to automatically execute macros without warning the user by embedding t
Running Windows 2000 LDAP Server over SSL, a function does not properly check the permissions of a user request when the
lsfs in AIX 4.x allows a local user to gain additional privileges by creating Trojan horse programs named (1) grep or (2
kcms_configure as included with Solaris 7 and 8 allows a local attacker to gain additional privileges via a buffer overf
Buffer overflow in the kcsSUNWIOsolf.so library in Solaris 7 and 8 allows local attackers to execute arbitrary commands
kfm as included with KDE 1.x can allow a local attacker to gain additional privileges via a symlink attack in the kfm ca
sendfiled, as included with Simple Asynchronous File Transfer (SAFT), on various Linux systems does not properly drop pr
Identix BioLogon 2.03 and earlier does not lock secondary displays on a multi-monitor system running Windows 98 or ME, w
SQL injection vulnerability in prefs.php in phpBB 1.4.0 and 1.4.1 allows remote authenticated users to execute arbitrary
Buffer overflow in the Xview library as used by mailtool in Solaris 8 and earlier allows a local attacker to gain privil
Buffer overflow in dtmail in Solaris 2.6 and 7 allows local users to gain privileges via the MAIL environment variable.
Symantec LiveUpdate 1.5 stores proxy passwords in cleartext in a registry key, which could allow local users to obtain t
Buffer overflow in mailx in Solaris 8 and earlier allows a local attacker to gain additional privileges via a long '-F'
Digital Creations Zope 2.3.2 and earlier allows a local attacker to gain additional privileges via the changing of ZClas
Red Hat Linux 7.1 sets insecure permissions on swap files created during installation, which can allow a local attacker
Buffer overflow in Vixie cron 3.0.1-56 and earlier could allow a local attacker to gain additional privileges via a long
Buffer overflow in lpshut in SCO OpenServer 5.0.6 can allow a local attacker to gain additional privileges via a long fi
lpusers as included with SCO OpenServer 5.0 through 5.0.6 allows a local attacker to gain additional privileges via a b
Buffer overflow in lpforms in SCO OpenServer 5.0-5.0.6 can allow a local attacker to gain additional privileges via a lo
Ben Spink CrushFTP FTP Server 2.1.6 and earlier allows a local attacker to access arbitrary files via a '..' (dot dot) a
TrendMicro ScanMail for Exchange 3.5 Evaluation allows a local attacker to recover the administrative credentials for Sc
sendmail 8.9.3, as included with the MMDF 2.43.3b package in SCO OpenServer 5.0.6, can allow a local attacker to gain ad
asecure as included with HP-UX 10.01 through 11.00 can allow a local attacker to create a denial of service and gain add
PostgreSQL stores usernames and passwords in plaintext in (1) pg_shadow and (2) pg_pwd, which allows attackers with suff
Scan for 2001 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started