Search Results (29998 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2005-1299 1 Inserter.cgi 1 Inserter.cgi 2026-04-16 N/A
The inserter.cgi script allows remote attackers to execute arbitrary commands via shell metacharacters in the argument.
CVE-1999-0232 1 Ncsa Httpd Project 1 Ncsa Httpd 2026-04-16 N/A
Buffer overflow in NCSA WebServer (version 1.5c) gives remote access.
CVE-1999-0235 1 Ncsa 1 Ncsa Web Server 2026-04-16 N/A
Buffer overflow in NCSA WebServer (1.4.1 and below) gives remote access.
CVE-2006-2434 1 Ibm 1 Websphere Application Server 2026-04-16 N/A
Unspecified vulnerability in WebSphere 5.1.1 (or any earlier cumulative fix) Common Configuration Mode + CommonArchive and J2EE Models might allow attackers to obtain sensitive information via the trace.
CVE-2006-4551 1 Chxo 1 Feedsplitter 2026-04-16 N/A
Eval injection vulnerability in CHXO Feedsplitter 2006-01-21 allows remote attackers to execute arbitrary PHP code via (1) the file specified as the value of the format parameter, and possibly (2) the RSS feed.
CVE-2005-1301 1 Nprotect 1 Netizen 2026-04-16 N/A
nProtect:Netizen 2005.3.17.1 does not properly verify that the update module is downloaded from an authorized site, which allows remote malicious web sites to write arbitrary files.
CVE-2006-4338 2 Gzip, Redhat 2 Gzip, Enterprise Linux 2026-04-16 N/A
unlzh.c in the LHZ component in gzip 1.3.5 allows context-dependent attackers to cause a denial of service (infinite loop) via a crafted GZIP archive.
CVE-1999-0251 1 Talkd 1 Talkd 2026-04-16 N/A
Denial of service in talk program allows remote attackers to disrupt a user's display.
CVE-1999-0264 1 Miva 1 Htmlscript 2026-04-16 N/A
htmlscript CGI program allows remote read access to files.
CVE-2006-2436 1 Ibm 1 Websphere Application Server 2026-04-16 N/A
WebSphere Application Server 5.0.2 (or any earlier cumulative fix) stores admin and LDAP passwords in plaintext in the FFDC logs when a login to WebSphere fails, which allows attackers to gain privileges.
CVE-2005-0811 1 Notify Technology 1 Notifylink 2026-04-16 N/A
The web interface in NotifyLink 3.0 does not properly restrict access to functions that have been disabled in the GUI, which allows remote authenticated users to bypass intended restrictions via a direct request to certain URLs.
CVE-2005-1309 1 Eaden Mckee 1 Bblog 2026-04-16 N/A
Cross-site scripting (XSS) vulnerability in bBlog 0.7.4 allows remote attackers to inject arbitrary web script or HTML via the (1) entry title field or (2) comment body text.
CVE-1999-0297 5 Bsdi, Freebsd, Netbsd and 2 more 5 Bsd Os, Freebsd, Netbsd and 2 more 2026-04-16 N/A
Buffer overflow in Vixie Cron library up to version 3.0 allows local users to obtain root access via a long environmental variable.
CVE-1999-0299 1 Freebsd 1 Freebsd 2026-04-16 N/A
Buffer overflow in FreeBSD lpd through long DNS hostnames.
CVE-1999-0300 1 Sun 2 Solaris, Sunos 2026-04-16 N/A
nis_cachemgr for Solaris NIS+ allows attackers to add malicious NIS+ servers.
CVE-2006-4850 1 Bolinos 1 Blinos 2026-04-16 N/A
PHP remote file inclusion vulnerability in system/_b/contentFiles/gBIndex.php in BolinOS 4.5.5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the gBRootPath parameter.
CVE-1999-0309 1 Hp 1 Hp-ux 2026-04-16 N/A
HP-UX vgdisplay program gives root access to local users.
CVE-1999-0310 1 Ssh 1 Ssh 2026-04-16 N/A
SSH 1.2.25 on HP-UX allows access to new user accounts.
CVE-1999-0313 1 Sgi 1 Irix 2026-04-16 N/A
disk_bandwidth on SGI IRIX 6.4 S2MP for Origin/Onyx2 allows local users to gain root access using relative pathnames.
CVE-2005-1310 1 Eaden Mckee 1 Bblog 2026-04-16 N/A
SQL injection vulnerability in bBlog 0.7.4 allows remote attackers to execute arbitrary SQL commands via the postid parameter.