patchadd in Solaris allows local users to overwrite arbitrary files via a symlink attack.
Format string vulnerability in stunnel 3.8 and earlier allows attackers to execute arbitrary commands via a malformed id
procfs in FreeBSD and possibly other operating systems does not properly restrict access to per-process mem and ctl file
procfs in FreeBSD and possibly other operating systems allows local users to cause a denial of service by calling mmap o
procfs in FreeBSD and possibly other operating systems allows local users to bypass access control restrictions for a ja
Webconfig, IMAP, and other services in MDaemon 3.5.0 and earlier allows remote attackers to cause a denial of service vi
Buffer overflow in bftpd 1.0.13 allows remote attackers to cause a denial of service and possibly execute arbitrary comm
The installation of J-Pilot creates the .jpilot directory with the user's umask, which could allow local attackers to re
Mac OS Runtime for Java (MRJ) 2.2.3 allows remote attackers to use malicious applets to read files outside of the CODEBA
dialog before 0.9a-20000118-3bis in Debian GNU/Linux allows local users to overwrite arbitrary files via a symlink attac
Buffer overflow in 1st Up Mail Server 4.1 allows remote attackers to cause a denial of service, and possibly execute arb
gpg (aka GnuPG) 1.0.4 and other versions does not properly verify detached signatures, which allows attackers to modify
gpg (aka GnuPG) 1.0.4 and other versions imports both public and private keys from public key servers without notifying
Buffer overflow in the find_default_type function in libsecure in NSA Security-enhanced Linux, which may allow attackers
Directory traversal vulnerability in print.cgi in Technote allows remote attackers to read arbitrary files via a .. (dot
Directory traversal vulnerability in main.cgi in Technote allows remote attackers to read arbitrary files via a .. (dot
register.cgi in Ikonboard 2.1.7b and earlier allows remote attackers to execute arbitrary commands via the SEND_MAIL par
The clustmon service in Sun Cluster 2.x does not require authentication, which allows remote attackers to obtain sensiti
in.mond in Sun Cluster 2.x allows local users to read arbitrary files via a symlink attack on the status file of a host
Support Tools Manager (STM) A.22.00 for HP-UX allows local users to overwrite arbitrary files via a symlink attack on th
Cisco Catalyst 6000, 5000, or 4000 switches allow remote attackers to cause a denial of service by connecting to the SSH
swinit in nCipher does not properly disable the Operator Card Set recovery feature even when explicitly disabled by the
Check Point VPN-1/FireWall-1 4.1 SP2 with Fastmode enabled allows remote attackers to bypass access restrictions via mal
Windows Media Unicast Service in Windows Media Services 4.0 and 4.1 does not properly shut down some types of connection
GTK+ library allows local users to specify arbitrary modules via the GTK_MODULES environmental variable, which could all
Buffer overflow in Kermit communications software in HP-UX 11.0 and earlier allows local users to cause a denial of serv
CGI Script Center Subscribe Me LITE 2.0 and earlier allows remote attackers to delete arbitrary mailing list users witho
itetris/xitetris 1.6.2 and earlier trusts the PATH environmental variable to find and execute the gunzip program, which
Vulnerability in telnetd in FreeBSD 1.5 allows local users to gain root privileges by modifying critical environmental v
Buffer overflow in kdc_reply_cipher of libkrb (Kerberos 4 authentication library) in NetBSD 1.5 and FreeBSD 4.2 and earl
catman in Solaris 2.7 and 2.8 allows local users to overwrite arbitrary files via a symlink attack on the sman_PID tempo
FrontPage Server Extensions (FPSE) in IIS 4.0 and 5.0 allows remote attackers to cause a denial of service via a malform
The Web interface for Infinite Interchange 3.6.1 allows remote attackers to cause a denial of service (application crash
Buffer overflow in Bea WebLogic Server before 5.1.0 allows remote attackers to execute arbitrary commands via a long URL
bsguest.cgi guestbook script allows remote attackers to execute arbitrary commands via shell metacharacters in the email
bslist.cgi mailing list script allows remote attackers to execute arbitrary commands via shell metacharacters in the ema
Vulnerability in fetchmail 5.5.0-2 and earlier in the AUTHENTICATE GSSAPI command.
"Multiple Users" Control Panel in Mac OS 9 allows Normal users to gain Owner privileges by removing the Users & Groups D
CoffeeCup Direct and Free FTP clients uses weak encryption to store passwords in the FTPServers.ini file, which could al
MDaemon Pro 3.5.1 and earlier allows local users to bypass the "lock server" security setting by pressing the Cancel but
Vulnerability in top in HP-UX 11.04 and earlier allows local users to overwrite files owned by the "sys" group.
Vulnerability in inetd server in HP-UX 11.04 and earlier allows attackers to cause a denial of service when the "swait"
The "mxcsr P4" vulnerability in the Linux kernel before 2.2.17-14, when running on certain Intel CPUs, allows local user
periodic in FreeBSD 4.1.1 and earlier, and possibly other operating systems, allows local users to overwrite arbitrary f
The presence of the Distributed GL Daemon (dgld) service on port 5232 on SGI IRIX systems allows remote attackers to ide
MailMan Webmail 3.0.25 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the
FoolProof 3.9 allows local users to bypass program execution restrictions by downloading the restricted executables from
BroadVision One-To-One Enterprise allows remote attackers to determine the physical path of server files by requesting a
Format string vulnerability in ssldump possibly allows remote attackers to cause a denial of service and possibly gain r
KTH Kerberos IV allows local users to change the configuration of a Kerberos server running at an elevated privilege by
Scan for 2001 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started