Search Results (29997 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2005-4523 1 Mantis 1 Mantis 2026-04-16 N/A
Mantis 1.0.0rc3 and earlier discloses private bugs via public RSS feeds, which allows remote attackers to obtain sensitive information.
CVE-2005-4527 1 Direct News 1 Direct News 2026-04-16 N/A
Multiple SQL injection vulnerabilities in Direct News 4.9 allow remote attackers to execute arbitrary SQL commands via (1) the setLang parameter in index.php and (2) unspecified search module parameters.
CVE-2005-4545 1 Netdirect 1 Shopengine 2026-04-16 N/A
Cross-site scripting (XSS) vulnerability in search.asp in NetDirect ShopEngine allows remote attackers to inject arbitrary web script or HTML via the EXPS parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
CVE-2005-4546 1 Epic Designs 1 Eggblog 2026-04-16 N/A
search.php in eggblog 2.0 allows remote attackers to obtain the full path via an invalid q parameter, as used by the Keyword and Search fields, possibly due to an SQL injection vulnerability.
CVE-1999-0902 1 Linux-nis 1 Ypserv 2026-04-16 N/A
ypserv allows local administrators to modify password tables.
CVE-2005-4547 1 Epic Designs 1 Eggblog 2026-04-16 N/A
Cross-site scripting (XSS) vulnerability in home/search.php in eggblog 2.0 allows remote attackers to execute arbitrary SQL commands via the q parameter, as used by the Keyword and Search fields.
CVE-1999-0919 1 Motorola 1 Motorola Cablerouter 2026-04-16 N/A
A memory leak in a Motorola CableRouter allows remote attackers to conduct a denial of service via a large number of telnet connections.
CVE-1999-0930 1 Matt Wright 1 Wwwboard 2026-04-16 N/A
wwwboard allows a remote attacker to delete message board articles via a malformed argument.
CVE-1999-0934 2026-04-16 N/A
classifieds.cgi allows remote attackers to read arbitrary files via shell metacharacters.
CVE-1999-0936 2026-04-16 N/A
BNBSurvey survey.cgi program allows remote attackers to execute commands via shell metacharacters.
CVE-1999-0946 1 Yamaha 1 Midiplug 2026-04-16 N/A
Buffer overflow in Yamaha MidiPlug via a Text variable in an EMBED tag.
CVE-1999-0951 1 Omnicron 1 Omnihttpd 2026-04-16 N/A
Buffer overflow in OmniHTTPd CGI program imagemap.exe allows remote attackers to execute commands.
CVE-1999-0954 1 Matt Wright 1 Wwwboard 2026-04-16 N/A
WWWBoard has a default username and default password.
CVE-1999-0955 1 Washington University 1 Wu-ftpd 2026-04-16 N/A
Race condition in wu-ftpd and BSDI ftpd allows remote attackers to gain root access via the SITE EXEC command.
CVE-2005-4565 1 Adtran 1 Netvanta 2026-04-16 N/A
Format string vulnerability in the Internet Key Exchange version 1 (IKEv1) implementation in ADTRAN NetVanta before 10.03.03.E might allow remote attackers to have an unknown impact via format string specifiers in crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1.
CVE-1999-0956 1 Next 1 Nextstep 2026-04-16 N/A
The NeXT NetInfo _writers property allows local users to gain root privileges or conduct a denial of service.
CVE-1999-0962 1 Hp 1 Hp-ux 2026-04-16 N/A
Buffer overflow in HPUX passwd command allows local users to gain root privileges via a command line option.
CVE-1999-0968 1 James Seter 1 Bnc Irc 2026-04-16 N/A
Buffer overflow in BNC IRC proxy allows remote attackers to gain privileges.
CVE-1999-0974 1 Sun 2 Solaris, Sunos 2026-04-16 N/A
Buffer overflow in Solaris snoop allows remote attackers to gain root privileges via GETQUOTA requests to the rpc.rquotad service.
CVE-1999-0975 1 Microsoft 3 Windows 95, Windows 98, Windows Nt 2026-04-16 N/A
The Windows help system can allow a local user to execute commands as another user by editing a table of contents metafile with a .CNT extension and modifying the topic action to include the commands to be executed when the .hlp file is accessed.