Vulnerability index

Browse CVEs

28 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2022-26507 A heap-based buffer overflow exists in XML Decompression DecodeTreeBlock in AT&T Labs Xmill 0.7. A crafted input file can lead to remote code executi… Xmill 15.1 / 2021+ Fix from $2,3002022-04-14 CRITICAL 9.8 CVE-2021-21811 A memory corruption vulnerability exists in the XML-parsing CreateLabelOrAttrib functionality of AT&T Labs’ Xmill 0.7. A specially crafted XML file c… Xmill No fix yet Fix from $2,3002021-08-31 CRITICAL 9.8 CVE-2021-21826 A heap-based buffer overflow vulnerability exists in the XML Decompression DecodeTreeBlock functionality of AT&T Labs Xmill 0.7. Within `DecodeTreeBl… Xmill No fix yet Fix from $2,3002021-08-20 CRITICAL 9.8 CVE-2021-21827 A heap-based buffer overflow vulnerability exists in the XML Decompression DecodeTreeBlock functionality of AT&T Labs Xmill 0.7. Within `DecodeTreeBl… Xmill No fix yet Fix from $2,3002021-08-20 CRITICAL 9.8 CVE-2021-21828 A heap-based buffer overflow vulnerability exists in the XML Decompression DecodeTreeBlock functionality of AT&T Labs Xmill 0.7. In the default case … Xmill No fix yet Fix from $2,3002021-08-20 CRITICAL 9.8 CVE-2021-21825 A heap-based buffer overflow vulnerability exists in the XML Decompression PlainTextUncompressor::UncompressItem functionality of AT&T Labs’ Xmill 0.… Xmill No fix yet Fix from $2,3002021-08-18 CRITICAL 9.8 CVE-2021-21810 A memory corruption vulnerability exists in the XML-parsing ParseAttribs functionality of AT&T Labs’ Xmill 0.7. A specially crafted XML file can lead… Xmill No fix yet Fix from $2,3002021-08-17 HIGH 7.8 CVE-2021-21812 A stack-based buffer overflow vulnerability exists in the command-line-parsing HandleFileArg functionality of AT&T Labs’ Xmill 0.7. Within the functi… Xmill No fix yet Fix from $1,9502021-08-13 HIGH 7.8 CVE-2021-21813 Within the function HandleFileArg the argument filepattern is under control of the user who passes it in from the command line. filepattern is passed… Xmill No fix yet Fix from $1,9502021-08-13 HIGH 7.8 CVE-2021-21814 Within the function HandleFileArg the argument filepattern is under control of the user who passes it in from the command line. filepattern is passed… Xmill No fix yet Fix from $1,9502021-08-13 HIGH 7.8 CVE-2021-21815 A stack-based buffer overflow vulnerability exists in the command-line-parsing HandleFileArg functionality of AT&T Labs' Xmill 0.7. Within the functi… Xmill No fix yet Fix from $1,9502021-08-13 CRITICAL 9.8 CVE-2021-21829 A heap-based buffer overflow vulnerability exists in the XML Decompression EnumerationUncompressor::UncompressItem functionality of AT&T Labs’ Xmill … Xmill No fix yet Fix from $2,3002021-08-13 CRITICAL 9.8 CVE-2021-21830 A heap-based buffer overflow vulnerability exists in the XML Decompression LabelDict::Load functionality of AT&T Labs’ Xmill 0.7. A specially crafted… Xmill No fix yet Fix from $2,3002021-08-13 HIGH 7.5 CVE-2020-22650 A memory leak vulnerability in sim-organizer.c of AlienVault Ossim v5 causes a denial of service (DOS) via a system crash triggered by the occurrence… Alienvault Ossim Mitigation only Fix from $1,9502021-07-19 HIGH 7.5 CVE-2013-7286 MobileIron VSP < 5.9.1 and Sentry < 5.0 has a weak password obfuscation algorithm Mobileiron Sentry 5.0 / 5.9.1+ Fix from $1,9502020-02-12 HIGH 8.1 CVE-2017-10793 The AT&T U-verse 9.2.2h0d83 firmware for the Arris NVG589, NVG599, and unspecified other devices, when IP Passthrough mode is not used, configures an… U Verse Firmware No fix yet Fix from $1,9502017-09-03 HIGH 8.1 CVE-2017-14115 The AT&T U-verse 9.2.2h0d83 firmware for the Arris NVG589 and NVG599 devices, when IP Passthrough mode is not used, configures ssh-permanent-enable W… U Verse Firmware No fix yet Fix from $1,9502017-09-03 HIGH 8.1 CVE-2017-14116 The AT&T U-verse 9.2.2h0d83 firmware for the Arris NVG599 device, when IP Passthrough mode is not used, configures WAN access to a caserver https ser… U Verse Firmware No fix yet Fix from $1,9502017-09-03 MEDIUM 5.9 CVE-2017-14117EPSS 8% The AT&T U-verse 9.2.2h0d83 firmware for the Arris NVG589 and NVG599 devices, when IP Passthrough mode is not used, configures an unauthenticated pro… U Verse Firmware No fix yet Fix from $1,6002017-09-03 MEDIUM 6.8 CVE-2013-6029 Stack-based buffer overflow in the AT&T Connect Participant Application before 9.5.51 on Windows allows remote attackers to execute arbitrary code vi… Connect Participant Application after 9.5.0 Fix from $1,6002013-12-04 HIGH 7.1 CVE-2012-2980 The Samsung and HTC onTouchEvent method implementation for Android on the T-Mobile myTouch 3G Slide, HTC Merge, Sprint EVO Shift 4G, HTC ChaCha, AT&T… Status Mitigation only Fix from $1,9502012-08-21 MEDIUM 5.0 CVE-2002-1511 The vncserver wrapper for vnc before 3.3.3r2-21 uses the rand() function instead of srand(), which causes vncserver to generate weak cookies. Vnc Patch available Fix from $1,6002003-03-03 HIGH 10.0 CVE-2001-0168EPSS 71% Buffer overflow in AT&T WinVNC (Virtual Network Computing) server 3.3.3r7 and earlier allows remote attackers to execute arbitrary commands via a lon… Winvnc after 3.3.3r7 Fix from $1,9502001-05-03 HIGH 7.6 CVE-2001-0167EPSS 51% Buffer overflow in AT&T WinVNC (Virtual Network Computing) client 3.3.3r7 and earlier allows remote attackers to execute arbitrary commands via a lon… Winvnc after 3.3.3r7 Fix from $1,9502001-05-03 HIGH 7.5 CVE-2001-1422 WinVNC 3.3.3 and earlier generates the same challenge string for multiple connections, which allows remote attackers to bypass VNC authentication by … Winvnc after 3.3.3 Fix from $1,9502001-01-23 HIGH 9.0 CVE-2000-1164 WinVNC installs the WinVNC3 registry key with permissions that give Special Access (read and modify) to the Everybody group, which allows users to re… Winvnc Patch available Fix from $1,9502001-01-09 HIGH 10.0 CVE-1999-1059 Vulnerability in rexec daemon (rexecd) in AT&T TCP/IP 4.0 for various SVR4 systems allows remote attackers to execute arbitrary commands. Svr4 Patch available Fix from $1,9501992-02-25 HIGH 7.2 CVE-1999-1034 Vulnerability in login in AT&T System V Release 4 allows local users to gain privileges. Svr4 Patch available Fix from $1,9501991-05-23