Buffer overflow in the Netinfo Setup Tool (NeST) allows local users to execute arbitrary code.
Unknown vulnerability in Mac OS X 10.3.9 allows local users to gain privileges via (1) chfn, (2) chpass, and (3) chsh, w
The elf_core_dump function in binfmt_elf.c for Linux kernel 2.x.x to 2.2.27-rc2, 2.4.x to 2.4.31-pre1, and 2.6.x to 2.6.
Integer overflow in the searchfs system call in Mac OS X 10.3.9 and earlier allows local users to execute arbitrary code
Unknown vulnerability in the nfs_mount call in Mac OS X 10.3.9 and earlier allows local users to gain privileges via cra
Raw character devices (raw.c) in the Linux kernel 2.6.x call the wrong function before passing an ioctl to the block dev
The (1) stopserver.sh and (2) startserver.sh scripts in Adobe Version Cue on Mac OS X uses the current working directory
The pkt_ioctl function in the pktcdvd block device ioctl handler (pktcdvd.c) in Linux kernel 2.6.12-rc4 and earlier call
Cheetah 0.9.15 and 0.9.16 searches the /tmp directory for modules before using the paths in the PYTHONPATH variable, whi
ppxp does not drop root privileges before opening log files, which allows local users to execute arbitrary commands.
gdb before 6.3 searches the current working directory to load the .gdbinit configuration file, which allows local users
qpopper 4.0.5 and earlier does not properly drop privileges before processing certain user-supplied files, which allows
Buffer overflow in the Aavmker4 device driver in Avast! Antivirus 4.6 and possibly other versions allows local users to
Buffer overflow in ptrace in the Linux Kernel for 64-bit architectures allows local users to write bytes into kernel mem
The klif.sys driver in Kaspersky Labs Anti-Virus 5.0.227, 5.0.228, and 5.0.335 on Windows 2000 allows local users to gai
Buffer overflow in the Web Client service in Microsoft Windows XP and Windows Server 2003 allows remote authenticated us
Unknown vulnerability in the CoreGraphics Window Server for Mac OS X 10.4.x up to 10.4.1 allows local users to inject ar
Symantec pcAnywhere 10.5x and 11.x before 11.5, with "Launch with Windows" enabled, allows local users with physical acc
The runtime linker (ld.so) in Solaris 8, 9, and 10 trusts the LD_AUDIT environment variable in setuid or setgid programs
The helper scripts for crip 3.5 do not properly use temporary files, which allows local users to have an unknown impact
Unknown vulnerability in arshell in the Array Service (arrayd) for SGI ProPack 3 with SP 5 and 6, and SGI ProPack 4, all
Softiacom wMailserver 1.0 stores passwords in plaintext in the Darsite\MAILSRV\Admin key, which allows local users to ga
Buffer overflow in multiple "p" commands in IBM AIX 5.1, 5.2 and 5.3 might allow local users to execute arbitrary code v
Buffer overflow in the getlvname command in IBM AIX 5.1, 5.2 and 5.3, might allow local users to execute arbitrary code
Buffer overflow in the diagTasksWebSM command in IBM AIX 5.1, 5.2 and 5.3, might allow local users to execute arbitrary
Format string vulnerability in the paginit command in IBM AIX 5.3, and possibly other versions, might allow local users
Format string vulnerability in the swcons command in IBM AIX 5.3, and possibly other versions, might allow local users t
Stack-based buffer overflow in the IMAP daemon (imapd) in MailEnable Professional 1.54 allows remote authenticated users
Check Point SecuRemote NG with Application Intelligence R54 allows attackers to obtain credentials and gain privileges v
The device file system (devfs) in FreeBSD 5.x does not properly check parameters of the node type when creating a device
Oracle Forms 4.5 through 10g starts form executables from arbitrary directories and executes them as the Oracle or Syste
Buffer overflow in SlimFTPd 3.15 and 3.16 allows remote authenticated users to execute arbitrary code via a long directo
Oray PeanutHull 3.0.1.0 and earlier does not properly drop SYSTEM privileges when launched from the system tray, which a
Buffer overflow in a certain USB driver, as used on Microsoft Windows, allows attackers to execute arbitrary code.
gopher.c in the Gopher client 3.0.5 does not properly create temporary files, which allows local users to gain privilege
Nortel Contivity VPN Client V05_01.030, when configuring a certificate to be used as authentication, does not properly d
The web administration interface in Mentor ADSL-FR4II router running firmware 2.00.0111 does not set a default password,
AOL Client Software 9.0 uses insecure permissions for its installation path, which allows local users to execute arbitra
The System Profiler in Mac OS X 10.4.2 labels a Bluetooth device with "Requires Authentication: No" even when the user h
slpd in Directory Services in Mac OS X 10.3.9 creates insecure temporary files as root, which allows local users to gain
Unspecified vulnerability in the command line processing (CLI) logic in Cisco Intrusion Prevention System 5.0(1) and 5.0
init_dev in tty_io.c in the Red Hat backport of NPTL to Red Hat Enterprise Linux 3 does not properly clear controlling t
kcheckpass in KDE 3.2.0 up to 3.4.2 allows local users to gain root access via a symlink attack on lock files.
frox 0.7.18, when running setuid root, does not properly drop privileges when reading a configuration file, which allows
Multiple stack-based buffer overflows in urban before 1.5.3 allow local users to gain privileges via a long HOME environ
umount in util-linux 2.8 to 2.12q, 2.13-pre1, and 2.13-pre2, and other packages such as loop-aes-utils, allows local use
Buffer overflow in getconf in IBM AIX 5.2 to 5.3 allows local users to execute arbitrary code via unknown vectors.
Microsoft Windows 2000 before Update Rollup 1 for SP4 allows a local administrator to unlock a computer even if it has b
runpriv in SGI IRIX allows local users to bypass intended restrictions and execute arbitrary commands via shell metachar
Stack-based buffer overflow in PWIWrapper.dll for Webroot Desktop Firewall before 1.3.0build52 allows local users to exe
Scan for 2005 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started