Export limit exceeded: 400523 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Search

Search Results (400523 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2006-4913 1 Alstrasoft 1 E-friends 2026-04-16 N/A
Directory traversal vulnerability in chat/getStartOptions.php in AlstraSoft E-friends 4.85 allows remote attackers to include arbitrary local files and possibly execute arbitrary code via a .. (dot dot) sequence and trailing null (%00) byte in the lang parameter, as demonstrated by injecting PHP code into a log file.
CVE-2001-0506 1 Microsoft 2 Internet Information Server, Internet Information Services 2026-04-16 N/A
Buffer overflow in ssinc.dll in IIS 5.0 and 4.0 allows local users to gain system privileges via a Server-Side Includes (SSI) directive for a long filename, which triggers the overflow when the directory name is added, aka the "SSI privilege elevation" vulnerability.
CVE-1999-0140 1 Microsoft 1 Windows Nt 2026-04-16 N/A
Denial of service in RAS/PPTP on NT systems.
CVE-1999-0154 1 Microsoft 2 Internet Information Server, Internet Information Services 2026-04-16 N/A
IIS 2.0 and 3.0 allows remote attackers to read the source code for ASP pages by appending a . (dot) to the end of the URL.
CVE-1999-0198 2026-04-16 N/A
finger .@host on some systems may print information on some user accounts.
CVE-2001-0513 1 Oracle 1 Oracle9i 2026-04-16 N/A
Oracle listener process on Windows NT redirects connection requests to another port and creates a separate thread to process the request, which allows remote attackers to cause a denial of service by repeatedly connecting to the Oracle listener but not connecting to the redirected port.
CVE-1999-0220 2026-04-16 N/A
Attackers can do a denial of service of IRC by crashing the server.
CVE-2001-0517 1 Oracle 1 Oracle8i 2026-04-16 N/A
Oracle listener in Oracle 8i on Solaris allows remote attackers to cause a denial of service via a malformed connection packet with a maximum transport data size that is set to 0.
CVE-1999-0223 1 Sun 1 Sunos 2026-04-16 N/A
Solaris syslogd crashes when receiving a message from a host that doesn't have an inverse DNS entry.
CVE-1999-1197 1 Sun 1 Sunos 2026-04-16 N/A
TIOCCONS in SunOS 4.1.1 does not properly check the permissions of a user who tries to redirect console output and input, which could allow a local user to gain privileges.
CVE-1999-1200 1 Vintra Systems 1 Smtp Mailserver 2026-04-16 N/A
Vintra SMTP MailServer allows remote attackers to cause a denial of service via a malformed "EXPN *@" command.
CVE-1999-0240 2026-04-16 N/A
Some filters or firewalls allow fragmented SYN packets with IP reserved bits in violation of their implemented policy.
CVE-1999-0255 2026-04-16 N/A
Buffer overflow in ircd allows arbitrary command execution.
CVE-1999-1209 1 Sco 2 Open Desktop, Openserver 2026-04-16 N/A
Vulnerability in scoterm in SCO OpenServer 5.0 and SCO Open Desktop/Open Server 3.0 allows local users to gain root privileges.
CVE-1999-1215 1 Novell 1 Netware 2026-04-16 N/A
LOGIN.EXE program in Novell Netware 4.0 and 4.01 temporarily writes user name and password information to disk, which could allow local users to gain privileges.
CVE-1999-0261 2026-04-16 N/A
Netmanager Chameleon SMTPd has several buffer overflows that cause a crash.
CVE-1999-0268 1 Metainfo 1 Metaweb 2026-04-16 N/A
MetaInfo MetaWeb web server allows users to upload, execute, and read scripts.
CVE-1999-0276 1 Hughes 1 Msql 2026-04-16 N/A
mSQL v2.0.1 and below allows remote execution through a buffer overflow.
CVE-1999-0283 2026-04-16 N/A
The Java Web Server would allow remote users to obtain the source code for CGI programs.
CVE-1999-1216 1 Cisco 1 Router 2026-04-16 N/A
Cisco routers 9.17 and earlier allow remote attackers to bypass security restrictions via certain IP source routed packets that should normally be denied using the "no ip source-route" command.