Vulnerabilities (CVE)

Filtered by NVD-CWE-Other
Total 29682 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-4713 1 Psywerks 1 Puma 2025-04-03 7.5 HIGH N/A
PHP remote file inclusion vulnerability in config.php in PSYWERKS PUMA 1.0 RC2 allows remote attackers to execute arbitrary PHP code via a URL in the fpath parameter.
CVE-1999-0592 2025-04-03 10.0 HIGH N/A
The Logon box of a Windows NT system displays the name of the last user who logged in.
CVE-2001-0698 1 Netwin 1 Surgeftp 2025-04-03 5.0 MEDIUM N/A
Directory traversal vulnerability in NetWin SurgeFTP 2.0a and 1.0b allows a remote attacker to list arbitrary files and directories via the 'nlist ...' command.
CVE-2005-1326 1 Voodoo Circle 1 Voodoo Circle 2025-04-03 5.0 MEDIUM N/A
Buffer overflow in VooDoo cIRCle BOTNET before 1.0.33 allows remote authenticated attackers to cause a denial of service (client crash) via a crafted packet.
CVE-1999-0785 1 Isc 1 Inn 2025-04-03 7.2 HIGH N/A
The INN inndstart program allows local users to gain root privileges via the "pathrun" parameter in the inn.conf file.
CVE-2005-1691 1 Sap 1 Sap R 3 2025-04-03 5.0 MEDIUM N/A
Directory traversal vulnerability in Internet Graphics Server in SAP before 6.40 Patch 11 allows remote attackers to read arbitrary files via ".." sequences in an HTTP GET request.
CVE-2005-0816 1 Sun 2 Solaris, Sunos 2025-04-03 7.2 HIGH N/A
Buffer overflow in newgrp in Solaris 7 through 9 allows local users to gain root privileges.
CVE-2004-1325 1 Microsoft 1 Windows Media Player 2025-04-03 5.0 MEDIUM N/A
The getItemInfoByAtom function in the ActiveX control for Microsoft Windows Media Player 9.0 returns a 0 if the file does not exist and the size of the file if the file exists, which allows remote attackers to determine the existence of files on the local system.
CVE-2006-0789 1 Kyocera 1 Fs-3830n 2025-04-03 10.0 HIGH N/A
Certain unspecified Kyocera printers have a default "admin" account with a blank password, which allows remote attackers to access an administrative menu via a telnet session.
CVE-2000-1185 1 Itserv Incorporated 1 Ridewaypn 2025-04-03 5.0 MEDIUM N/A
The telnet proxy in RideWay PN proxy server allows remote attackers to cause a denial of service via a flood of connections that contain malformed requests.
CVE-2004-1462 1 Moinmoin 1 Moinmoin 2025-04-03 7.5 HIGH N/A
Unknown vulnerability in MoinMoin 1.2.2 and earlier allows remote attackers to gain unauthorized access to administrator functions such as (1) revert and (2) delete.
CVE-2006-4764 1 Wtools 1 Wtools 2025-04-03 7.5 HIGH N/A
PHP remote file inclusion vulnerability in common.php in Thomas LETE WTools 0.0.1-ALPH allows remote attackers to execute arbitrary PHP code via a URL in the include_path parameter.
CVE-1999-0703 3 Bsdi, Freebsd, Openbsd 3 Bsd Os, Freebsd, Openbsd 2025-04-03 3.6 LOW N/A
OpenBSD, BSDI, and other Unix operating systems allow users to set chflags and fchflags on character and block devices.
CVE-2004-0178 1 Linux 1 Linux Kernel 2025-04-03 2.1 LOW N/A
The OSS code for the Sound Blaster (sb16) driver in Linux 2.4.x before 2.4.26, when operating in 16 bit mode, does not properly handle certain sample sizes, which allows local users to cause a denial of service (crash) via a sample with an odd number of bytes.
CVE-2006-4766 1 Stefan Ernst 1 Newsscript 2025-04-03 5.0 MEDIUM N/A
Directory traversal vulnerability in print.php in Stefan Ernst Newsscript (aka WM-News) 0.5 beta allows remote attackers to read arbitrary files via a .. (dot dot) in the ide parameter.
CVE-2005-3342 1 Norman Ramsey 1 Noweb 2025-04-03 1.2 LOW N/A
noweb 2.10c and earlier allows local users to overwrite arbitrary files via symlink attacks on temporary files in (1) lib/toascii.nw and (2) shell/roff.mm.
CVE-1999-0338 1 Ibm 1 Aix 2025-04-03 7.2 HIGH N/A
AIX Licensed Program Product performance tools allow local users to gain root access.
CVE-2003-0159 1 Ethereal Group 1 Ethereal 2025-04-03 7.5 HIGH N/A
Heap-based buffer overflow in the NTLMSSP code for Ethereal 0.9.9 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code.
CVE-2004-2529 1 Gadu-gadu 1 Gadu-gadu Instant Messenger 2025-04-03 5.0 MEDIUM N/A
Gadu-Gadu allows remote attackers to bypass the "image send" option by sending a very small image file, which could be used in conjunction with image-related vulnerabilities.
CVE-2006-2291 1 Inhouse Associates 1 Ia-calendar 2025-04-03 5.8 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in calendar_new.asp in IA-Calendar allows remote attackers to inject arbitrary web script or HTML via the TypeName1 parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information.