Vulnerability index

Browse CVEs

4,008 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Permissions, Privileges & Access ControlsCWE-264 × clear
Solaris HIGH 7.2
CVE-2002-1590

The Web-Based Enterprise Management (WBEM) packages (1) SUNWwbdoc, (2) SUNWwbcou, (3) SUNWwbdev and (4) SUNWmgapp packages, when installed using Sola…

Patch available
Fix from $1,950 2002-10-29
Mantis MEDIUM 5.0
CVE-2002-1111

print_all_bug_page.php in Mantis 0.17.3 and earlier does not verify the limit_reporters option, which allows remote attackers to view bug summaries f…

Patch available
Fix from $1,600 2002-10-04
Snmp HIGH 10.0
CVE-2002-0012EPSS 24%

Vulnerabilities in a large number of SNMP implementations allow remote attackers to cause a denial of service or gain privileges via SNMPv1 trap hand…

Patch available
Fix from $1,950 2002-02-13
Snmp HIGH 10.0
CVE-2002-0013EPSS 51%

Vulnerabilities in the SNMPv1 request handling of a large number of SNMP implementations allow remote attackers to cause a denial of service or gain …

Patch available
Fix from $1,950 2002-02-13
Application Server HIGH 7.5
CVE-2001-1371EPSS 12%

The default configuration of Oracle Application Server 9iAS 1.0.2.2 enables SOAP and allows anonymous users to deploy applications by default via urn…

Patch available
Fix from $1,950 2002-02-06
Spyanywhere HIGH 7.5
CVE-2001-0771

Spytech SpyAnywhere 1.50 allows remote attackers to gain administrator access via a single character in the "loginpass" field.

Mitigation only
Fix from $1,950 2001-10-18
Fetchmail HIGH 10.0
CVE-2001-1009EPSS 7%

Fetchmail (aka fetchmail-ssl) before 5.8.17 allows a remote malicious (1) IMAP server or (2) POP/POP3 server to overwrite arbitrary memory and possib…

Fix: after 5.8.14
Fix from $1,950 2001-08-31
Linux HIGH 10.0
CVE-2000-0844EPSS 15%

Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to exe…

Patch available
Fix from $1,950 2000-11-14
Linux HIGH 7.2
CVE-2000-0219

Red Hat 6.0 allows local users to gain root access by booting single user and hitting ^C at the password prompt.

Patch available
Fix from $1,950 2000-02-23
Ie HIGH 7.2
CVE-1999-0839

Windows NT Task Scheduler installed with Internet Explorer 5 allows a user to gain privileges by modifying the job after it has been scheduled.

Mitigation only
Fix from $1,950 1999-11-29
Windows Nt HIGH 7.2
CVE-1999-0899

The Windows NT 4.0 print spooler allows a local user to execute arbitrary commands due to inappropriate permissions that allow the user to specify an…

Mitigation only
Fix from $1,950 1999-11-04
Commercial Internet System HIGH 7.5
CVE-1999-0777EPSS 12%

IIS FTP servers may allow a remote attacker to read or delete files on the server, even if they have "No Access" permissions.

Mitigation only
Fix from $1,950 1999-09-23
Terminal Server HIGH 7.5
CVE-1999-0909EPSS 12%

Multihomed Windows systems allow a remote attacker to bypass IP source routing restrictions via a malformed packet with IP options, aka the "Spoofed …

Mitigation only
Fix from $1,950 1999-09-20
Data Access Components HIGH 10.0
CVE-1999-1011EPSS 77%

The Remote Data Service (RDS) DataFactory component of Microsoft Data Access Components (MDAC) in IIS 3.x and 4.x exposes unsafe methods, which allow…

Mitigation only
Fix from $1,950 1999-07-19
Windows Nt HIGH 7.8
CVE-1999-0728EPSS 6%

A Windows NT user can disable the keyboard or mouse by directly calling the IOCTLs which control them.

Mitigation only
Fix from $1,950 1999-07-06
Windows Nt HIGH 7.2
CVE-1999-0344

NT users can gain debug-level access on a system process using the Sechole exploit.

Mitigation only
Fix from $1,950 1998-08-01
Windows Nt MEDIUM 5.0
CVE-1999-0227EPSS 5%

Access violation in LSASS.EXE (LSA/LSARPC) program in Windows NT allows a denial of service.

Mitigation only
Fix from $1,600 1997-06-01
Windows Nt HIGH 7.2
CVE-1999-0496

A Windows NT 4.0 user can gain administrative rights by forcing NtOpenProcessToken to succeed regardless of the user's permissions, aka GetAdmin.

Mitigation only
Fix from $1,950 1997-01-01