CERT home
vulnerabilities & fixesevaluations & practicesresearch & analysistraining & education
homesearchFAQsite indexcontact
Vulnerability
Notes
Database

Search Vulnerability Notes

Vulnerability Notes Help Information
 

 View Notes By
Name

ID Number

CVE Name

Date Public

Date Published

Date Updated

Severity Metric

CVE NameIDDate
Public
Name
CAN-1999-0092VU#1850010/29/1997IBM AIX portmir buffer overflow
CAN-1999-1312VU#1003103/01/1993OpenVMS page management vulnerability
CAN-2000-0383VU#2444705/08/2000AOL Instant Messenger exposes local file path during file transfers
CAN-2000-0385VU#3343305/01/2000Filemaker Pro 5.0v3 and below does not adequately protect web-enabled databases
CAN-2000-0400VU#3199405/13/2000MS ActiveMovieControl Object downloads arbitrary files
CAN-2000-0573VU#2982306/23/2000Format string input validation error in wu-ftpd site_exec() function
CAN-2000-0667VU#2570107/27/2000Linux gpm daemon allows arbitrary file removal
CAN-2000-0713VU#3155408/03/2000Adobe Acrobat products have buffer overflow in the CIDFont /Registry and /Ordering entries
CAN-2000-0715VU#57095212/20/2000Redhat Linux diskcheck.pl creates predictable temporary file and fails to check for existing symbolic link of same name
CAN-2000-0884VU#11167710/10/2000Microsoft IIS 4.0 / 5.0 vulnerable to directory traversal via extended unicode in url (MS00-078)
CAN-2000-0889VU#47054310/24/2000Sun Microsystems Keys exposed and revoked
CAN-2000-0890VU#62691911/13/2000Race condition in periodic
CAN-2000-0891VU#596208/15/1997Notes default ECL allows execution of unsigned code
CAN-2000-0892VU#2240409/26/2000telnet and rlogin URLs disclose sensitive information, including Environment variables
CAN-2000-0893VU#2802710/27/2000Distributed GL Daemon (DGLD) allows attackers to identify IRIX systems
CAN-2000-0987VU#11827710/18/2000The Oracle Internet Directory LDAP (oidldapd) contains buffer overflow
CAN-2000-0993VU#36942710/03/2000Format string vulnerability in libutil pw_error(3) function
CAN-2000-1009VU#15365310/31/2000Linux dump uses environment variables insecurely, allowing for root compromise
CAN-2000-1105VU#82984511/10/2000Microsoft Windows 2000 Indexing Services enumerates local file locations via ixsso.query ActiveX object
CAN-2000-1125VU#96087711/04/2000Red Hat linux restore uses insecure environment variables allowing root compromise
CAN-2000-1149VU#57033011/08/2000MS Windows NT Terminal Server 4.0 buffer overflow in regapi.dll allows remote code execution or DoS
CAN-2000-1164VU#19747711/19/2000AT&T WinVNC allows user access to passwords and configuration via weak registry permissions
CAN-2001-0004VU#26427201/08/2001Microsoft Internet Information Server (IIS) discloses contents of files via crafted request containing "%3F+.htr"
CAN-2001-0006VU#35464801/24/2001Microsoft Windows NT 4.0/TSE Winsock2ProtocolCatalogMutex has insecure permissions
CAN-2001-0008VU#24737101/09/2001Borland/Inprise Interbase SQL database server contains backdoor superuser account with known password
CAN-2001-0010VU#19694501/29/2001ISC BIND 8 contains buffer overflow in transaction signature (TSIG) handling code
CAN-2001-0011VU#57218301/29/2001ISC BIND 4 contains buffer overflow in nslookupComplain()
CAN-2001-0012VU#32543101/29/2001Queries to ISC BIND servers may disclose environment variables
CAN-2001-0013VU#86891601/29/2001ISC BIND 4 contains input validation error in nslookupComplain()
CAN-2001-0015VU#10728002/05/2001Microsoft Windows 2000 Network Dynamic Data Exchange (DDE) executes code as Local System

  Vulnerability Notes By CVE Name
Notes 1 - 30 of 2517
Next Page  Last Page 

Copyright 2008 Carnegie Mellon University