Latest CVE Feed
-
2.1
LOWCVE-2000-0129
Buffer overflow in the SHGetPathFromIDList function of the Serv-U FTP server allows attackers to cause a denial of service by performing a LIST command on a malformed .lnk file.... Read more
- EPSS Score: %0.12
- Published: Feb. 04, 2000
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0462
ftpd in NetBSD 1.4.2 does not properly parse entries in /etc/ftpchroot and does not chroot the specified users, which allows those users to access other files outside of their home directory.... Read more
Affected Products : netbsd- EPSS Score: %0.14
- Published: May. 28, 2000
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2002-2028
The screensaver on Windows NT 4.0, 2000, XP, and 2002 does not verify if a domain account has already been locked when a valid password is provided, which makes it easier for users with physical access to conduct brute force password guessing.... Read more
- EPSS Score: %0.81
- Published: Dec. 31, 2002
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0264
Panda Security 3.0 with registry editing disabled allows users to edit the registry and gain privileges by directly executing a .reg file or using other methods.... Read more
Affected Products : panda_security- EPSS Score: %0.62
- Published: Apr. 17, 2000
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2002-1490
NetBSD 1.4 through 1.6 beta allows local users to cause a denial of service (kernel panic) via a series of calls to the TIOCSCTTY ioctl, which causes an integer overflow in a structure counter and sets the counter to zero, which frees memory that is still... Read more
Affected Products : netbsd- EPSS Score: %0.06
- Published: Apr. 02, 2003
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2002-1848
TightVNC before 1.2.4 running on Windows stores unencrypted passwords in the password text control of the WinVNC Properties dialog, which could allow local users to access passwords.... Read more
Affected Products : tightvnc- EPSS Score: %0.06
- Published: Dec. 31, 2002
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0286
X fontserver xfs allows local users to cause a denial of service via malformed input to the server.... Read more
Affected Products : linux- EPSS Score: %0.48
- Published: Apr. 16, 2000
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-1999-0446
Local users can perform a denial of service in NetBSD 1.3.3 and earlier versions by creating an unusual symbolic link with the ln command, triggering a bug in VFS.... Read more
Affected Products : netbsd- EPSS Score: %0.08
- Published: Apr. 12, 1999
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-1999-1118
ndd in Solaris 2.6 allows local users to cause a denial of service by modifying certain TCP/IP parameters.... Read more
Affected Products : solaris- EPSS Score: %0.06
- Published: Mar. 11, 1998
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2014-5398
Schneider Electric Wonderware Information Server (WIS) Portal 4.0 SP1 through 5.5 allows remote attackers to read arbitrary files or cause a denial of service via an XML external entity declaration in conjunction with an entity reference, related to an XM... Read more
Affected Products : wonderware_information_server- EPSS Score: %0.11
- Published: Aug. 28, 2014
- Modified: Apr. 12, 2025
-
2.1
LOWCVE-2012-2068
Multiple cross-site scripting (XSS) vulnerabilities in fancy_slide.module in the Fancy Slide module before 6.x-2.7 for Drupal allow remote authenticated users with the administer fancy_slide permission to inject arbitrary web script or HTML via the (1) no... Read more
- EPSS Score: %0.34
- Published: Sep. 05, 2012
- Modified: Apr. 11, 2025
-
2.1
LOWCVE-2004-0770
romload.c in DGen Emulator 1.23 and earlier allows local users to overwrite arbitrary files via a symlink attack on temporary files during decompression of (1) gzip or (2) bzip ROM files.... Read more
- EPSS Score: %0.06
- Published: Jan. 10, 2005
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2001-0351
Microsoft Windows 2000 telnet service allows a local user to make a certain system call that allows the user to terminate a Telnet session and cause a denial of service.... Read more
Affected Products : windows_2000- EPSS Score: %0.44
- Published: Jul. 21, 2001
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0445
The pgpk command in PGP 5.x on Unix systems uses an insufficiently random data source for non-interactive key pair generation, which may produce predictable keys.... Read more
Affected Products : pgp- EPSS Score: %0.26
- Published: May. 24, 2000
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2008-2368
Red Hat Certificate System 7.2 stores passwords in cleartext in the UserDirEnrollment log, the RA wizard installer log, and unspecified other debug log files, and uses weak permissions for these files, which allows local users to discover passwords by rea... Read more
Affected Products : certificate_system- EPSS Score: %0.03
- Published: Jan. 20, 2009
- Modified: Apr. 09, 2025
-
2.1
LOWCVE-2010-2038
Cross-site scripting (XSS) vulnerability in include/tool/editing_files.php in gpEasy CMS 1.6.2 allows remote authenticated users, with Edit privileges, to inject arbitrary web script or HTML via the gpcontent parameter to index.php. NOTE: some of these d... Read more
Affected Products : gpeasy_cms- EPSS Score: %0.29
- Published: May. 25, 2010
- Modified: Apr. 11, 2025
-
2.1
LOWCVE-2005-3331
viewpatch in mgdiff 1.0 allows local users to overwrite arbitrary files via a symlink attack on temporary files.... Read more
Affected Products : mgdiff_patch_viewer- EPSS Score: %0.09
- Published: Oct. 27, 2005
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0485
Microsoft SQL Server allows local users to obtain database passwords via the Data Transformation Service (DTS) package Properties dialog, aka the "DTS Password" vulnerability.... Read more
Affected Products : sql_server- EPSS Score: %1.27
- Published: May. 30, 2000
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2000-0502
Mcafee VirusScan 4.03 does not properly restrict access to the alert text file before it is sent to the Central Alert Server, which allows local users to modify alerts in an arbitrary fashion.... Read more
Affected Products : virusscan- EPSS Score: %0.09
- Published: Jun. 08, 2000
- Modified: Apr. 03, 2025
-
2.1
LOWCVE-2005-2785
cosmoshop 8.10.78 and earlier stores passwords in plaintext in the database, which allows local users to obtain sensitive information.... Read more
Affected Products : cosmoshop- EPSS Score: %0.07
- Published: Sep. 02, 2005
- Modified: Apr. 03, 2025