Vulnerability index

Browse CVEs

1,961 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Javamail MEDIUM 5.0
CVE-2007-6059

Javamail does not properly handle a series of invalid login attempts in which the same e-mail address is entered as username and password, and the do…

No fix yet
Fix from $1,600 2007-11-20
F5d7230 4 MEDIUM 5.0
CVE-2007-6040

The Belkin F5D7230-4 Wireless G Router allows remote attackers to cause a denial of service (degraded networking and logging) via a flood of TCP SYN …

Mitigation only
Fix from $1,600 2007-11-20
Konqueror MEDIUM 5.0
CVE-2007-6000

KDE Konqueror 3.5.6 and earlier allows remote attackers to cause a denial of service (crash) via large HTTP cookie parameters.

Fix: after 3.5.6
Fix from $1,600 2007-11-15
Linux Kernel HIGH 7.8
CVE-2007-5501

The tcp_sacktag_write_queue function in net/ipv4/tcp_input.c in Linux kernel 2.6.21 through 2.6.23.7, and 2.6.24-rc through 2.6.24-rc2, allows remote…

Patch available
Fix from $1,950 2007-11-15
Mac Os X HIGH 10.0
CVE-2007-4689EPSS 7%

Double free vulnerability in the Networking component in Apple Mac OS X 10.4 through 10.4.10 allows remote attackers to cause a denial of service (sy…

Patch available
Fix from $1,950 2007-11-15
Mac Os X HIGH 9.0
CVE-2007-4690

Double free vulnerability in the NFS component in Apple Mac OS X 10.4 through 10.4.10 allows remote authenticated users to execute arbitrary code via…

Patch available
Fix from $1,950 2007-11-15
Linux Kernel HIGH 7.5
CVE-2006-7229

The skge driver 1.5 in Linux kernel 2.6.15 on Ubuntu does not properly use the spin_lock and spin_unlock functions, which allows remote attackers to …

Mitigation only
Fix from $1,950 2007-11-15
Firefox HIGH 7.1
CVE-2007-5896

Mozilla Firefox 2.0.0.9 allows remote attackers to cause a denial of service (CPU consumption and crash) via an iframe with Javascript that sets the …

Mitigation only
Fix from $1,950 2007-11-08
Net Snmp HIGH 7.8
CVE-2007-5846EPSS 29%

The SNMP agent (snmp_agent.c) in net-snmp before 5.4.1 allows remote attackers to cause a denial of service (CPU and memory consumption) via a GETBUL…

Fix: after 5.4.1
Fix from $1,950 2007-11-06
Openldap HIGH 7.1
CVE-2007-5707

OpenLDAP before 2.3.39 allows remote attackers to cause a denial of service (slapd crash) via an LDAP request with a malformed objectClasses attribut…

Patch available
Fix from $1,950 2007-10-30
Openldap HIGH 7.1
CVE-2007-5708

slapo-pcache (overlays/pcache.c) in slapd in OpenLDAP before 2.3.39, when running as a proxy-caching server, allocates memory using a malloc variant …

Patch available
Fix from $1,950 2007-10-30
3proxy MEDIUM 5.0
CVE-2007-5622

Double free vulnerability in the ftpprchild function in ftppr in 3proxy 0.5 through 0.5.3i allows remote attackers to cause a denial of service (daem…

Patch available
Fix from $1,600 2007-10-29
Xscreensaver MEDIUM 5.0
CVE-2007-5585

xscreensaver 5.03 and earlier, when running without xscreensaver-gl-extras (GL extras) installed, crashes when /usr/bin/xscreensaver-gl-helper does n…

Mitigation only
Fix from $1,600 2007-10-19
Unified Callmanager HIGH 7.8
CVE-2007-5537

Cisco Unified Communications Manager (CUCM, formerly CallManager) 5.1 before 5.1(2), and Unified CallManager 5.0, allow remote attackers to cause a d…

Fix: after 5.1
Fix from $1,950 2007-10-18
Database Server HIGH 7.8
CVE-2007-5506

The Core RDBMS component in Oracle Database 9.0.1.5+, 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 allows remote attackers to cause a denial of service…

Mitigation only
Fix from $1,950 2007-10-17
Brightstor Arcserve Backup HIGH 10.0
CVE-2007-5329

Unspecified vulnerability in dbasvr in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, has unknown impact and attack …

Patch available
Fix from $1,950 2007-10-13
Brightstor Arcserve Backup HIGH 10.0
CVE-2007-5330EPSS 13%

The cadbd RPC service in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r10.5, allows remote attackers to (1) execute arbit…

Patch available
Fix from $1,950 2007-10-13
Brightstor Arcserve Backup HIGH 10.0
CVE-2007-5332EPSS 5%

Multiple unspecified vulnerabilities in (1) mediasvr and (2) caloggerd in CA BrightStor ARCServe BackUp v9.01 through R11.5, and Enterprise Backup r1…

Patch available
Fix from $1,950 2007-10-13
Windows 2003 Server HIGH 7.1
CVE-2007-5133EPSS 23%

Microsoft Windows Explorer (explorer.exe) allows user-assisted remote attackers to cause a denial of service (CPU consumption) via a certain PNG file…

No fix yet
Fix from $1,950 2007-09-27
Ace MEDIUM 6.5
CVE-2007-4496

Unspecified vulnerability in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Pl…

Fix: after 6.0.1
Fix from $1,600 2007-09-21
Kmplayer HIGH 7.1
CVE-2007-4941

KMPlayer 2.9.3.1210 and earlier allows remote attackers to cause a denial of service (CPU consumption) via a .avi file with certain large "indx truck…

Fix: after 2.9.3.1210
Fix from $1,950 2007-09-18
Ekiga MEDIUM 5.0
CVE-2007-4897EPSS 11%

pwlib, as used by Ekiga 2.0.5 and possibly other products, allows remote attackers to cause a denial of service (application crash) via a long argume…

Mitigation only
Fix from $1,600 2007-09-14
Webns MEDIUM 5.0
CVE-2007-4654

Unspecified vulnerability in SSHield 1.6.1 with OpenSSH 3.0.2p1 on Cisco WebNS 8.20.0.1 on Cisco Content Services Switch (CSS) series 11000 devices a…

Mitigation only
Fix from $1,600 2007-09-04
Weblogic Server HIGH 7.8
CVE-2007-4617

Unspecified vulnerability in BEA WebLogic Server 6.1 Gold through SP7, 7.0 Gold through SP7, and 8.1 Gold through SP4 allows remote attackers to caus…

Mitigation only
Fix from $1,950 2007-08-31
Weblogic Server HIGH 7.8
CVE-2007-4618

Unspecified vulnerability in BEA WebLogic Server 6.1 Gold through SP7 and 7.0 Gold through SP7 allows remote attackers to cause a denial of service (…

Patch available
Fix from $1,950 2007-08-31
Anti Virus HIGH 7.8
CVE-2007-4577EPSS 6%

Sophos Anti-Virus for Unix/Linux before 2.48.0 allows remote attackers to cause a denial of service (infinite loop) via a malformed BZip file that re…

Patch available
Fix from $1,950 2007-08-28
Linux Kernel MEDIUM 6.0
CVE-2007-3851

The drm/i915 component in the Linux kernel before 2.6.22.2, when used with i965G and later chipsets, allows local users with access to an X11 session…

Fix: after 2.6.22.1
Fix from $1,600 2007-08-13
Rendezvous HIGH 7.8
CVE-2007-4158

Memory leak in TIBCO Rendezvous (RV) daemon (rvd) 7.5.2, 7.5.3 and 7.5.4 allows remote attackers to cause a denial of service (memory consumption) vi…

Mitigation only
Fix from $1,950 2007-08-03
Libvorbis MEDIUM 6.8
CVE-2007-3106

lib/info.c in libvorbis 1.1.2, and possibly other versions before 1.2.0, allows context-dependent attackers to cause a denial of service and possibly…

Fix: after 1.2.0
Fix from $1,600 2007-07-26
Publisher HIGH 9.3
CVE-2007-1754EPSS 33%

PUBCONV.DLL in Microsoft Office Publisher 2007 does not properly clear memory when transferring data from disk to memory, which allows user-assisted …

Mitigation only
Fix from $1,950 2007-07-10