Unspecified vulnerability in Microsoft Excel 2000, XP, 2003, and 2004 for Mac, and possibly other Office products, allow
Argument injection vulnerability involving Microsoft Outlook and Outlook Express, when certain URIs are registered, allo
Invensys Wonderware InTouch 8.0 creates a NetDDE share with insecure permissions (Everyone/Full Control), which allows r
Directory traversal vulnerability in OpenBase 10.0.5 and earlier allows remote authenticated users to create files with
OpenBase 10.0.5 and earlier allows remote authenticated users to trigger a free of an arbitrary memory location via long
Unspecified vulnerability in the expand_stack function in grsecurity PaX allows local users to gain privileges via unspe
The centralized management feature for Utimaco Safeguard stores hard-coded cryptographic keys in executable programs for
Sign extension error in the ReadDIBImage function in ImageMagick before 6.3.5-9 allows context-dependent attackers to ex
IBM Lotus Notes before 6.5.6, and 7.x before 7.0.3; and Domino before 6.5.5 FP3, and 7.x before 7.0.2 FP1; uses weak per
The kernel in Apple Mac OS X 10.4 through 10.4.10 does not reset the current Mach Thread Port or Thread Exception Port w
Integer signedness error in the Networking component in Apple Mac OS X 10.4 through 10.4.10 allows local users to execut
oftpd before 0.3.7 allows remote attackers to cause a denial of service (daemon abort) via a (1) LPRT or (2) LPASV comma
WebCore in Apple WebKit build 18794 allows remote attackers to cause a denial of service (null dereference and applicati
Clam AntiVirus ClamAV before 0.90 does not close open file descriptors under certain conditions, which allows remote att
The Zend Engine in PHP 4.x before 4.4.7, and 5.x before 5.2.2, allows remote attackers to cause a denial of service (sta
MyServer 0.8.9 and earlier does not properly handle uppercase characters in filename extensions, which allows remote att
Net::DNS before 0.60, a Perl module, allows remote attackers to cause a denial of service (stack consumption) via a malf
JWIG might allow context-dependent attackers to cause a denial of service (service degradation) via loops of references
The TFTP implementation in IBM Tivoli Provisioning Manager for OS Deployment 5.1 before Fix Pack 3 allows remote attacke
Multiple off-by-one errors in fsplib.c in fsplib before 0.8 allow attackers to cause a denial of service via unspecified
Directory traversal vulnerability in index.php in PHP Directory Lister (dirLIST) before 0.1.1 allows remote attackers to
The IAX2 channel driver (chan_iax2) in Asterisk Open 1.2.x before 1.2.23, 1.4.x before 1.4.9, and Asterisk Appliance Dev
The Visionsoft Audit on Demand Service (VSAOD) in Visionsoft Audit 12.4.0.0 uses weak cryptography (XOR) when (1) transm
The login_to_simulator method in Linden Lab Second Life, as used by the secondlife:// protocol handler and possibly othe
Mobile Spy (1) stores login credentials in cleartext under the RetinaxStudios registry key, and (2) sends login credenti
The skge driver 1.5 in Linux kernel 2.6.15 on Ubuntu does not properly use the spin_lock and spin_unlock functions, whic
Scan for 2007 Vulnerabilities
CyberStrike detects these CVEs across your infrastructure automatically.
Get Started