Windows NT 4.0 SP 6a allows a local user with write access to winnt/system32 to cause a denial of service (crash in lsas
Vulnerability in a system call in BSDI 3.0 and 3.1 allows local users to cause a denial of service (reboot) in the kerne
Digital Creations Zope 2.3.1 b1 and earlier allows a local attacker (Zope user) with through-the-web scripting capabilit
Digital Creations Zope 2.3.1 b1 and earlier contains a problem in the method return values related to the classes (1) Ob
IMAP server in Alt-N Technologies MDaemon 3.5.6 allows a local user to cause a denial of service (hang) via long (1) SEL
NetScreen ScreenOS prior to 2.5r6 on the NetScreen-10 and Netscreen-100 can allow a local attacker to bypass the DMZ 'de
imwheel-solo in imwheel package allows local users to modify arbitrary files via a symlink attack from the .imwheelrc fi
POP2 or POP3 server (pop3d) in imap-uw IMAP package on FreeBSD and other operating systems creates lock files with predi
oracle program in Oracle 8.0.x, 8.1.x and 9.0.1 allows local users to overwrite arbitrary files via a symlink attack on
ns6install installation script for Netscape 6.01 on Solaris, and other versions including 6.2.1 beta, allows local users
Sage Software MAS 200 allows remote attackers to cause a denial of service by connecting to port 10000 and entering a se
fetchmailconf in fetchmail before 5.7.4 allows local users to overwrite files of other users via a symlink attack on tem
rlmadmin RADIUS management utility in Merit AAA Server 3.8M, 5.01, and possibly other versions, allows local users to re
msgchk in Digital UNIX 4.0G and earlier allows a local user to read the first line of arbitrary files via a symlink atta
Bugzilla before 2.14 does not restrict access to sanitycheck.cgi, which allows local users to cause a denial of service
process_bug.cgi in Bugzilla before 2.14 does not set the "groupset" bit when a bug is moved between product groups, whic
The libsecurity library in HP-UX 11.04 (VVOS) allows attackers to cause a denial of service.
Memory leak in the proxy service in Microsoft Internet Security and Acceleration (ISA) Server 2000 allows local attacker
Directory traversal vulnerability in IncrediMail version 1400185 and earlier allows local users to overwrite files on th
Maximum Rumpus FTP Server 2.0.3 dev and before allows an attacker to cause a denial of service (crash) via a mkdir comma
libutil in OpenSSH on FreeBSD 4.4 and earlier does not drop privileges before verifying the capabilities for reading the
Cisco PIX firewall manager (PFM) 4.3(2)g logs the enable password in plaintext in the pfm.log file, which could allow lo
Vulnerability in (1) pine before 4.33 and (2) the pico editor, included with pine, allows local users local users to ove
Cisco Hot Standby Routing Protocol (HSRP) allows local attackers to cause a denial of service by spoofing HSRP packets.
Horde IMP 2.2.4 and earlier allows local users to overwrite files via a symlink attack on a temporary file.
Linux kernel 2.2.1 through 2.2.19, and 2.4.1 through 2.4.10, allows local users to cause a denial of service via a serie
IIS 5.0 allows local users to cause a denial of service (hang) via by installing content that produces a certain invalid
Outlook Web Access (OWA) in Microsoft Exchange 2000 allows an authenticated user to cause a denial of service (CPU consu
Sendmail before 8.12.1, without the RestrictQueueRun option enabled, allows local users to cause a denial of service (da
Sendmail before 8.12.1, without the RestrictQueueRun option enabled, allows local users to obtain potentially sensitive
iptables-save in iptables before 1.2.4 records the "--reject-with icmp-host-prohibited" rule as "--reject-with tcp-reset
Linux kernel before 2.4.11pre3 in multiple Linux distributions allows local users to cause a denial of service (crash) b
Netscape 4.79 and earlier for MacOS allows an attacker with access to the browser to obtain passwords from form fields b
Vulnerability in CIFS/9000 Server (SAMBA) A.01.06 and earlier in HP-UX 11.0 and 11.11, when configured as a print server
Vulnerability in Oracle 8.0.x through 9.0.1 on Unix allows local users to overwrite arbitrary files, possibly via a syml
DeltaThree Pc-To-Phone 3.0.3 places sensitive data in world-readable locations in the installation directory, which allo
Certain backend drivers in the SANE library 1.0.3 and earlier, as used in frontend software such as XSane, allows local
Microsoft Internet Explorer for Unix 5.0SP1 allows local users to possibly cause a denial of service (crash) in CDE or t
Hughes Technology Mini SQL 2.0.10 through 2.0.12 allows local users to cause a denial of service by creating a very larg
smcboot in Sun SMC (Sun Management Center) 2.0 in Solaris 8 allows local users to delete arbitrary files via a symlink a
Microsoft Internet Explorer 4.0 through 6.0 could allow local users to differentiate between alphanumeric and non-alphan
The finger daemon (in.fingerd) in Sun Solaris 2.5 through 8 and SunOS 5.5 through 5.8 allows remote attackers to list al
RunAs (runas.exe) in Windows 2000 stores cleartext authentication information in memory, which could allow attackers to
RunAs (runas.exe) in Windows 2000 only creates one session instance at a time, which allows local users to cause a denia
Xircom REX 6000 allows local users to obtain the 10 digit PIN by starting a serial monitor, connecting to the personal d
easyNews 1.5 and earlier stores administration passwords in cleartext in settings.php, which allows local users to obtai
mod_usertrack in Apache 1.3.11 through 1.3.20 generates session ID's using predictable information including host IP add
ZoneAlarm 2.1 through 2.6 and ZoneAlarm Pro 2.4 and 2.6 allows local users to bypass filtering via non-standard TCP pack
Tiny Personal Firewall 1.0 and 2.0 allows local users to bypass filtering via non-standard TCP packets created with non-
CentraOne 5.2 and Centra ASP with basic authentication enabled creates world-writable base64 encoded log files, which al
Scan for 2001 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started