Export limit exceeded: 367035 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Export limit exceeded: 367035 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Search

Search Results (367035 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2003-0771 1 Apache Gallery 1 Apache Gallery 2026-04-16 N/A
Gallery.pm in Apache::Gallery (aka A::G) uses predictable temporary filenames when running Inline::C, which allows local users to execute arbitrary code by creating and modifying the files before Apache::Gallery does.
CVE-2003-0174 1 Sgi 1 Irix 2026-04-16 9.8 Critical
The LDAP name service (nsd) in IRIX 6.5.19 and earlier does not properly verify if the USERPASSWORD attribute has been provided by an LDAP server, which could allow attackers to log in without a password.
CVE-1999-0830 1 Sco 1 Unixware 2026-04-16 N/A
Buffer overflow in SCO UnixWare Xsco command via a long argument.
CVE-1999-0753 1 Hughes 1 Msql 2026-04-16 N/A
The w3-msql CGI script provided with Mini SQL allows remote attackers to view restricted directories.
CVE-2006-0823 1 Geeklog 1 Geeklog 2026-04-16 N/A
Multiple SQL injection vulnerabilities in Geeklog 1.4.0 before 1.4.0sr1 and 1.3.11 before 1.3.11sr4 allow remote attackers to inject arbitrary SQL commands via the (1) userid variable to users.php or (2) sessid variable to lib-sessions.php.
CVE-1999-0801 1 Bmc 1 Patrol Agent 2026-04-16 N/A
BMC Patrol allows remote attackers to gain access to an agent by spoofing frames.
CVE-1999-0654 2026-04-16 N/A
The OS/2 or POSIX subsystem in NT is enabled.
CVE-2006-5001 2 Ipswitch, Progress 2 Ws Ftp Server, Ws Ftp Server 2026-04-16 N/A
Unspecified vulnerability in the log analyzer in WS_FTP Server 5.05 before Hotfix 1, and possibly other versions down to 5.0, prevents certain sensitive information from being displayed in the (1) Files and (2) Summary tabs. NOTE: in the early publication of this identifier on 20060926, the description was used for the wrong issue.
CVE-1999-0880 2 Bsdi, Caldera 2 Bsd Os, Openlinux 2026-04-16 N/A
Denial of service in WU-FTPD via the SITE NEWER command, which does not free memory properly.
CVE-1999-0829 1 Hp 1 Secure Web Console 2026-04-16 N/A
HP Secure Web Console uses weak encryption.
CVE-1999-0800 1 Allaire 1 Forums 2026-04-16 N/A
The GetFile.cfm file in Allaire Forums allows remote attackers to read files through a parameter to GetFile.cfm.
CVE-1999-0752 1 Netscape 1 Enterprise Server 2026-04-16 N/A
Denial of service in Netscape Enterprise Server via a buffer overflow in the SSL handshake.
CVE-1999-0653 2026-04-16 N/A
A component service related to NIS+ is running.
CVE-1999-0876 1 Microsoft 2 Ie, Internet Explorer 2026-04-16 N/A
Buffer overflow in Internet Explorer 4.0 via EMBED tag.
CVE-1999-0858 1 Microsoft 1 Internet Explorer 2026-04-16 N/A
Internet Explorer 5 allows a remote attacker to modify the IE client's proxy configuration via a malicious Web Proxy Auto-Discovery (WPAD) server.
CVE-2003-1134 1 Sun 1 Java 2026-04-16 N/A
Sun Java 1.3.1, 1.4.1, and 1.4.2 allows local users to cause a denial of service (JVM crash), possibly by calling the ClassDepth function with a null parameter, which causes a crash instead of generating a null pointer exception.
CVE-2003-0770 1 Ikonboard.com 1 Ikonboard 2026-04-16 N/A
FUNC.pm in IkonBoard 3.1.2a and earlier, including 3.1.1, does not properly cleanse the "lang" cookie when it contains illegal characters, which allows remote attackers to execute arbitrary code when the cookie is inserted into a Perl "eval" statement.
CVE-2003-0173 2 Sgi, Xfsdump 2 Irix, Xfsdump 2026-04-16 N/A
xfsdq in xfsdump does not create quota information files securely, which allows local users to gain root privileges.
CVE-2003-1133 1 Ritlabs 1 The Bat 2026-04-16 N/A
Rit Research Labs The Bat! 1.0.11 through 2.0 creates new accounts with insecure ACLs, which allows local users to read other users' email messages.
CVE-2003-0769 1 Mirabilis 1 Icq 2026-04-16 N/A
Cross-site scripting (XSS) vulnerability in the ICQ Web Front guestbook (guestbook.html) allows remote attackers to insert arbitrary web script and HTML via the message field.