| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| IRIX fam service allows an attacker to obtain a list of all files on the server. |
| Buffer overflow in AIX xdat gives root access to local users. |
| Buffer overflow in dtaction command gives root access. |
| The Perl fingerd program allows arbitrary command execution from remote users. |
| The SATAN session key may be disclosed if the user points the web browser to other sites, possibly allowing root access. |
| Some classic Cisco IOS devices have a vulnerability in the PPP CHAP authentication to establish unauthorized PPP connections. |
| in.rshd allows users to login with a NULL username and execute commands. |
| Solaris rpcbind can be exploited to overwrite arbitrary files and gain root access. |
| A quote cwd command on FTP servers can reveal the full path of the home directory of the "ftp" user. |
| Extra long export lists over 256 characters in some mount daemons allows NFS directories to be mounted by anyone. |
| Denial of service of Ascend routers through port 150 (remote administration). |
| Guessable magic cookies in X Windows allows remote attackers to execute commands, e.g. through xterm. |
| Hylafax faxsurvey CGI script on Linux allows remote attackers to execute arbitrary commands via shell metacharacters in the query string. |
| The WINS server in Microsoft Windows NT 4.0 before SP4 allows remote attackers to cause a denial of service (process termination) via invalid UDP frames to port 137 (NETBIOS Name Service), as demonstrated via a flood of random packets. |
| Buffer overflow in BNU UUCP daemon (uucpd) through long hostnames. |
| Buffer overflow in Internet Explorer 4.0(1). |
| Local or remote users can force ControlIT 4.5 to reboot or force a user to log out, resulting in a denial of service. |
| ControlIT v4.5 and earlier uses weak encryption to store usernames and passwords in an address book. |
| In some cases, Service Pack 4 for Windows NT 4.0 can allow access to network shares using a blank password, through a problem with a null NT hash value. |
| The Sun sdtcm_convert calendar utility for OpenWindows has a buffer overflow which can gain root access. |