| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| BackWeb client stores the username and password in cleartext for proxy authentication in the Communication registry key, which could allow other local users to gain privileges by reading the password. |
| The default installation of eTrust Access Control (formerly SeOS) uses a default encryption key, which allows remote attackers to spoof the eTrust administrator and gain privileges. |
| Beck IPC GmbH IPC@CHIP Embedded-Webserver allows remote attackers to cause a denial of service via a long HTTP request. |
| SunOS/Solaris FTP clients can be forced to execute arbitrary commands from a malicious FTP server. |
| xlockmore and xlockf do not properly cleanse user-injected format strings, which allows local users to gain root privileges via the -d option. |
| Buffer overflow in BNU UUCP daemon (uucpd) through long hostnames. |
| Intel Express 500 series switches allow a remote attacker to cause a denial of service via a malformed IP packet. |
| mmap function in BSD allows local attackers in the kmem group to modify memory through devices. |
| Buffer overflow in the HTML interpreter in Microsoft Office 2000 allows an attacker to execute arbitrary commands via a long embedded object tag, aka the "Microsoft Office HTML Object Tag" vulnerability. |
| Buffer overflow in HP-UX cstm program allows local users to gain root privileges. |
| Buffer overflow in vqSoft vqServer 1.4.49 allows remote attackers to cause a denial of service or possibly gain privileges via a long HTTP GET request. |
| HP-UX gwind program allows users to modify arbitrary files. |
| fpkg2swpk in HP-UX allows local users to gain root access. |
| Buffer overflow in Linux su command gives root access to local users. |
| HP ypbind allows attackers with root privileges to modify NIS data. |
| Buffer overflow in xmcd 2.1 allows local users to gain access through a user resource setting. |
| Samba 1.9.18 inadvertently includes a prototype application, wsmbconf, which is installed with incorrect permissions including the setgid bit, which allows local users to read and write files and possibly gain privileges via bugs in the program. |
| SunOS rpc.cmsd allows attackers to obtain root access by overwriting arbitrary files. |
| Transarc DCE Distributed File System (DFS) 1.1 for Solaris 2.4 and 2.5 does not properly initialize the grouplist for users who belong to a large number of groups, which could allow those users to gain access to resources that are protected by DFS. |
| Buffer overflow in Solaris kcms_configure command allows local users to gain root access. |