The IMAP functionality in PHP before 4.3.1 allows remote attackers to cause a denial of service via an e-mail message wi
Buffer overflow in the imap_fetch_overview function in the IMAP functionality (php_imap.c) in PHP before 4.3.3 allows re
EarlyImpact ProductCart 1.0 through 2.0 stores database/EIPC.mdb under the web root with insufficient access control, wh
Microsoft Internet Explorer allows remote attackers to cause a denial of service (resource consumption) via a Javascript
mod.php in eNdonesia 8.2 allows remote attackers to obtain sensitive information via a ' (quote) value in the lng parame
Clearswift MAILsweeper for SMTP 4.3.6 SP1 does not execute custom "on strip unsuccessful" hooks, which allows remote att
Directory traversal vulnerability in Kai Blankenhorn Bitfolge simple and nice index file (aka snif) before 1.2.5 allows
Trend Micro Virus Control System (TVCS) 1.8 running with IIS allows remote attackers to cause a denial of service (memor
Trend Micro Virus Control System (TVCS) Log Collector allows remote attackers to obtain usernames, encrypted passwords,
Directory traversal vulnerability in s.dll in WebCollection Plus 5.00 allows remote attackers to view arbitrary files in
Directory traversal vulnerability in NITE ftp-server (NiteServer) 1.83 allows remote attackers to list arbitrary directo
Directory traversal vulnerability in edittag.cgi in EditTag 1.1 allows remote attackers to read arbitrary files via a "%
Gabber 0.8.7 sends an email to a specific address during user login and logout, which allows remote attackers to obtain
Multiple GameSpy 3D 2.62 compatible gaming servers generate very large UDP responses to small requests, which allows rem
The escape_dangerous_chars function in CGI::Lite 2.0 and earlier does not correctly remove special characters including
clarkconnectd in ClarkConnect Linux 1.2 allows remote attackers to obtain sensitive information about the server via the
CoffeeCup Software Password Wizard 4.0 stores sensitive information such as usernames and passwords in a .apw file under
Lotus Domino Server 5.0 and 6.0 allows remote attackers to read the source code for files via an HTTP request with a fil
TOPo 1.43 allows remote attackers to obtain sensitive information by sending an HTTP request with an invalid parameter t
Petitforum stores the liste.txt data file under the web document root with insufficient access control, which allows rem
Directory traversal vulnerability in Unreal Tournament Server 436 and earlier allows remote attackers to access known fi
BitchX 75p3 and 1.0c16 through 1.0c20cvs allows remote attackers to cause a denial of service (segmentation fault) via a
Invision Power Services Invision Board 1.0 through 1.1.1, when a forum is password protected, stores the administrator p
Album.pl 6.1 allows remote attackers to execute arbitrary commands, when an alternative configuration file is used, via
mod_survey 3.0.0 through 3.0.15-pre6 does not check whether a survey exists before creating a subdirectory for it, which
Directory traversal vulnerability in download.php in Phorum 3.4 through 3.4.2 allows remote attackers to read arbitrary
The default configuration of ColdFusion MX has the "Enable Robust Exception Information" option selected, which allows r
Buffer overflow in 3D-FTP client 4.0 allows remote FTP servers to cause a denial of service (crash) and possibly execute
Clearswift MAILsweeper 4.0 through 4.3.7 allows remote attackers to bypass filtering via a file attachment that contains
Phorum 3.4 through 3.4.2 allows remote attackers to obtain the full path of the web server via an incorrect HTTP request
upload.php in Truegalerie 1.0 allows remote attackers to read arbitrary files by specifying the target filename in the f
Netscape Navigator 7.0.2 and Mozilla allows remote attackers to access cookie information in a different domain via an H
Memory leak in HP OpenView Network Node Manager (NNM) 6.2 and 6.4 allows remote attackers to cause a denial of service (
Unspecified vulnerability in HP OpenView Network Node Manager (NNM) 6.2 and 6.4 allows remote attackers to cause a denia
Directory traversal vulnerability in index.php in Bytehoard 0.7 allows remote attackers to read arbitrary files via a ..
Buffer overflow in mIRC 6.1 and 6.11 allows remote attackers to cause a denial of service (crash) via a long DCC SEND re
cart.pl in Dansie shopping cart allows remote attackers to obtain the installation path via an invalid db parameter, whi
PHP-Nuke 7.0 allows remote attackers to obtain the installation path via certain characters such as (1) ", (2) ', or (3)
Directory traversal vulnerability in Seagull Software Systems J Walk application server 3.2C9, and other versions before
Justice Guestbook 1.3 allows remote attackers to obtain the full installation path via a direct request to cfooter.php3,
Directory traversal vulnerability in PostNuke 0.723 and earlier allows remote attackers to include arbitrary files named
WF-Chat 1.0 Beta stores sensitive information under the web root with insufficient access control, which allows remote a
PlanetMoon Guestbook tr3.a stores sensitive information under the web root with insufficient access control, which allow
Directory traversal vulnerability in plugins/file.php in phpWebFileManager before 0.4.4 allows remote attackers to read
Absolute path traversal vulnerability in nukestyles.com viewpage.php addon for PHP-Nuke allows remote attackers to read
MyABraCaDaWeb 1.0.2 and earlier allows remote attackers to obtain sensitive information via an invalid IDAdmin or other
XOOPS 2.0, and possibly earlier versions, allows remote attackers to obtain sensitive information via an invalid xoopsOp
ScozNet ScozBook 1.1 BETA allows remote attackers to obtain sensitive information via an invalid PG parameter in view.ph
Buffer overflow in httpd.c of fnord 1.6 allows remote attackers to create a denial of service (crash) and possibly execu
Microsoft Internet Explorer 5.22, and other 5 through 6 SP1 versions, sends Referer headers containing https:// URLs in
Scan for 2003 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started