Two Sun security certificates have been compromised, which could allow attackers to insert malicious code such as applet
The Print Templates feature in Internet Explorer 5.5 executes arbitrary custom print templates without prompting the use
Windows Media Player 7 allows remote attackers to execute malicious Java applets in Internet Explorer clients by enclosi
Internet Explorer 5.5 and earlier executes Telnet sessions using command line arguments that are specified by the web si
vim (aka gvim) processes VIM control codes that are embedded in a file, which could allow attackers to execute arbitrary
Internet Explorer 5.5 and earlier does not properly validate digital certificates when Certificate Revocation List (CRL)
Vulnerabilities in CGI scripts in susehelp in SuSE 7.2 and 7.3 allow remote attackers to execute arbitrary commands by n
Internet Explorer 5.50.4134.0100 on Windows ME with "Prompt to allow cookies to be stored on your machine" enabled does
A cross-site scripting vulnerability in Caucho Technology Resin before 1.2.4 allows a malicious webmaster to embed Javas
A cross-site scripting vulnerability in Apache Tomcat 3.2.1 allows a malicious webmaster to embed Javascript in a reques
Cross-site scripting vulnerability in Mailman email archiver before 2.08 allows attackers to obtain sensitive informatio
Lucent/ORiNOCO WaveLAN cards generate predictable Initialization Vector (IV) values for the Wireless Encryption Protocol
Cisco 340-series Aironet access point using firmware 11.01 does not use 6 of the 24 available IV bits for WEP encryption
Small HTTP Server 2.03 and earlier allows remote attackers to cause a denial of service by repeatedly requesting a URL t
Small HTTP Server 2.01 does not properly process Server Side Includes (SSI) tags that contain null values, which allows
Small HTTP Server 2.01 allows remote attackers to cause a denial of service by connecting to the server and sending out
Various TCP/IP stacks and network applications allow remote attackers to cause a denial of service by flooding a target
loadpage.cgi CGI program in EZshopper 3.0 and 2.0 allows remote attackers to list and read files in the EZshopper data d
The web server for the SonicWALL SOHO firewall allows remote attackers to cause a denial of service via a long username
The web server for the SonicWALL SOHO firewall allows remote attackers to cause a denial of service via an empty GET or
Directory traversal vulnerability in Winsock FTPd (WFTPD) 3.00 and 2.41 with the "Restrict to home directory" option ena
PTlink IRCD 3.5.3 and PTlink Services 1.8.1 allow remote attackers to cause a denial of service (server crash) via "mode
in.identd ident server in SuSE Linux 6.x and 7.0 allows remote attackers to cause a denial of service via a long request
document.d2w CGI program in the IBM Net.Data db2www package allows remote attackers to determine the physical path of th
Telnet Service for Windows 2000 Professional does not properly terminate incomplete connection attempts, which allows re
Unify ServletExec AS v3.0C allows remote attackers to read source code for JSP pages via an HTTP request that ends with
The Extended Control List (ECL) feature of the Java Virtual Machine (JVM) in Lotus Notes Client R5 allows malicious web
McAfee WebShield SMTP 4.5 allows remote attackers to cause a denial of service via a malformed recipient field.
Authentix Authentix100 allows remote attackers to bypass authentication by inserting a . (dot) into the URL for a protec
Felix IRC client in BeOS r5 pro and earlier allows remote attackers to conduct a denial of service via a message that co
Baxter IRC client in BeOS r5 pro and earlier allows remote attackers to conduct a denial of service via a message that c
Browser IRC client in BeOS r5 pro and earlier allows remote attackers to conduct a denial of service via a message that
PostMaster 1.0 in BeOS r5 pro and earlier allows remote attackers to conduct a denial of service via a message that cont
RHConsole in RobinHood 1.1 web server in BeOS r5 pro and earlier allows remote attackers to cause a denial of service vi
RHDaemon in RobinHood 1.1 web server in BeOS r5 pro and earlier allows remote attackers to cause a denial of service via
NAI Sniffer Agent allows remote attackers to cause a denial of service (crash) by sending a large number of login reques
Balabit syslog-ng allows remote attackers to cause a denial of service (application crash) via a malformed log message t
Directory traversal vulnerability in cgiforum.pl script in CGIForum 1.0 allows remote attackers to ready arbitrary files
Microsys CyberPatrol uses weak encryption (trivial encoding) for credit card numbers and uses no encryption for the rema
bb-hist.sh, bb-histlog.sh, bb-hostsvc.sh, bb-rep.sh, bb-replog.sh, and bb-ack.sh in Big Brother (BB) before 1.5d3 allows
Netopia ISDN Router 650-ST before 4.3.5 allows remote attackers to read system logs without authentication by directly c
Real Networks RealServer 7 and earlier allows remote attackers to obtain portions of RealServer's memory contents, possi
WatchGuard Firebox II allows remote attackers to cause a denial of service by flooding the Firebox with a large number o
telnetd in FreeBSD 4.2 and earlier, and possibly other operating systems, allows remote attackers to cause a denial of s
The telnet proxy in RideWay PN proxy server allows remote attackers to cause a denial of service via a flood of connecti
Directory traversal vulnerability in Quikstore shopping cart program allows remote attackers to read arbitrary files via
The Apache module for PHP 4.0.0 through PHP 4.0.4, when disabled with the 'engine = off' option for a virtual host, may
The RC4 stream cipher as used by SSH1 allows remote attackers to modify messages without detection by XORing the origina
The IDEA cipher as implemented by SSH1 does not protect the final block of a message against modification, which allows
SSH before 2.0 disables host key checking when connecting to the localhost, which allows remote attackers to silently re
Scan for 2001 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started