Latest CVE Feed
-
10.0
HIGHCVE-2005-3277
The LPD service in HP-UX 10.20 11.11 (11i) and earlier allows remote attackers to execute arbitrary code via shell metacharacters ("`" or single backquote) in a request that is not properly handled when an error occurs, as demonstrated by killing the conn... Read more
Affected Products : hp-ux- EPSS Score: %37.29
- Published: Oct. 21, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2005-3442
Multiple unspecified vulnerabilities in Oracle Database Server 8i up to 10.1.0.4.2 have unknown impact and attack vectors, aka Oracle Vuln# (1) DB09 in Export, (2) DB11 in Materialized Views, and (3) DB16 in Security Service.... Read more
Affected Products : database_server- EPSS Score: %1.44
- Published: Nov. 02, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2005-4325
Multiple unspecified vulnerabilities in Driverse before 0.56b have unknown impact and attack vectors, related to (1) a "ptrace exploit" and (2) "some other potential security problems."... Read more
Affected Products : driverse- EPSS Score: %0.52
- Published: Dec. 17, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2005-1452
Serendipity before 0.8 allows Chief users to "hide plugins installed by other users."... Read more
Affected Products : serendipity- EPSS Score: %0.38
- Published: May. 03, 2005
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-1999-1237
Multiple buffer overflows in smbvalid/smbval SMB authentication library, as used in Apache::AuthenSmb and possibly other modules, allows remote attackers to execute arbitrary commands via (1) a long username, (2) a long password, and (3) other unspecified... Read more
Affected Products : http_server- EPSS Score: %0.42
- Published: Jun. 06, 1999
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-1999-1535
Buffer overflow in AspUpload.dll in Persits Software AspUpload before 1.4.0.2 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long argument in the HTTP request.... Read more
Affected Products : aspupload- EPSS Score: %1.81
- Published: Jul. 20, 1999
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0128
The Finger Server 0.82 allows remote attackers to execute commands via shell metacharacters.... Read more
Affected Products : the_finger_server- EPSS Score: %4.29
- Published: Feb. 04, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0425
Buffer overflow in the Web Archives component of L-Soft LISTSERV 1.8 allows remote attackers to execute arbitrary commands.... Read more
Affected Products : listserv- EPSS Score: %6.83
- Published: May. 03, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2006-2206
The MS-Logon authentication scheme in UltraVNC (aka Ultr@VNC) 1.0.1 uses weak encryption (XOR) for challenge/response, which allows remote attackers to gain privileges by sniffing and decrypting passwords.... Read more
Affected Products : ultravnc- EPSS Score: %0.78
- Published: May. 05, 2006
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-0812
The administration module in Sun Java web server allows remote attackers to execute arbitrary commands by uploading Java code to the module and invoke the com.sun.server.http.pagecompile.jsp92.JspServlet by requesting a URL that begins with a /servlet/ ta... Read more
Affected Products : java_system_web_server- EPSS Score: %2.55
- Published: Nov. 14, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2000-1034
Buffer overflow in the System Monitor ActiveX control in Windows 2000 allows remote attackers to execute arbitrary commands via a long LogFileName parameter in HTML source code, aka the "ActiveX Parameter Validation" vulnerability.... Read more
Affected Products : windows_2000- EPSS Score: %15.43
- Published: Dec. 11, 2000
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-0028
Buffer overflow in the HTML parsing code in oops WWW proxy server 1.5.2 and earlier allows remote attackers to execute arbitrary commands via a large number of " (quotation) characters.... Read more
Affected Products : oops_proxy_server- EPSS Score: %6.94
- Published: Feb. 12, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-0171
Buffer overflow in SlimServe HTTPd 1.0 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long GET request.... Read more
Affected Products : slimserve- EPSS Score: %4.65
- Published: May. 03, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-0213
Buffer overflow in pi program in PlanetIntra 2.5 allows remote attackers to execute arbitrary commands.... Read more
Affected Products : planet_intra- EPSS Score: %2.60
- Published: May. 03, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-0269
pam_ldap authentication module in Solaris 8 allows remote attackers to bypass authentication via a NULL password.... Read more
Affected Products : sunos- EPSS Score: %0.61
- Published: May. 03, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-0552
ovactiond in HP OpenView Network Node Manager (NNM) 6.1 and Tivoli Netview 5.x and 6.x allows remote attackers to execute arbitrary commands via shell metacharacters in a certain SNMP trap message.... Read more
- EPSS Score: %3.34
- Published: Sep. 20, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-1999-1542
RPMMail before 1.4 allows remote attackers to execute commands via an e-mail message with shell metacharacters in the "MAIL FROM" command.... Read more
Affected Products : linux- EPSS Score: %2.32
- Published: Oct. 04, 1999
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-0285
Buffer overflow in A1 HTTP server 1.0a allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long HTTP request.... Read more
Affected Products : http_server- EPSS Score: %3.16
- Published: May. 03, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-1080
diagrpt in AIX 4.3.x and 5.1 uses the DIAGDATADIR environment variable to find and execute certain programs, which allows local users to gain privileges by modifying the variable to point to a Trojan horse program.... Read more
Affected Products : aix- EPSS Score: %3.41
- Published: Jun. 19, 2001
- Modified: Apr. 03, 2025
-
10.0
HIGHCVE-2001-1363
Vulnerability in phpWebSite before 0.7.9 related to running multiple instances in the same domain, which may allow attackers to gain administrative privileges.... Read more
Affected Products : phpwebsite- EPSS Score: %0.48
- Published: Jul. 19, 2001
- Modified: Apr. 03, 2025