|
314081
|
- |
|
aol
|
aim
|
Buffer overflow in AOL Instant Messenger (AIM) before 4.3.2229 allows remote attackers to execute arbitrary commands via a "buddyicon" command with a long "src" argument.
|
CWE-120
Classic Buffer Overflow
|
CVE-2000-1094
|
2024-02-9 12:20 |
2001-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314082
|
- |
|
sendmail netbsd hp windriver sun gentoo oracle
|
sendmail netbsd hp-ux bsdos sunos linux solaris alphaserver_sc platform_sa
|
Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related to sender and recipient header comments as processed by the …
|
CWE-120
Classic Buffer Overflow
|
CVE-2002-1337
|
2024-02-9 12:19 |
2003-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314083
|
- |
|
bsdi sun hp oracle debian ibm freebsd netbsd digital next
|
bsd_os sunos hp-ux solaris debian_linux aix freebsd netbsd ultrix nextstep
|
Buffer overflow of rlogin program using TERM environmental variable.
|
CWE-120
Classic Buffer Overflow
|
CVE-1999-0046
|
2024-02-9 12:19 |
1997-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314084
|
- |
|
terascript
|
wintango_application_server
|
Buffer overflow in WiTango Application Server and Tango 2000 allows remote attackers to execute arbitrary code via a long cookie to Witango_UserReference.
|
CWE-120
Classic Buffer Overflow
|
CVE-2003-0595
|
2024-02-9 12:18 |
2003-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314085
|
9.8 |
CRITICAL
Network
|
anybus
|
ipc\@chip_firmware
|
Beck IPC GmbH IPC@CHIP telnet service does not delay or disconnect users from the service when bad passwords are entered, which makes it easier for remote attackers to conduct brute force password gu…
|
CWE-307
mproper Restriction of Excessive Authentication Attempts
|
CVE-2001-1339
|
2024-02-9 12:15 |
2001-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314086
|
9.8 |
CRITICAL
Network
|
cgi
|
script_center_news_update
|
CGI Script Center News Update 1.1 does not properly validate the original news administration password during a password change operation, which allows remote attackers to modify the password without…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2000-0944
|
2024-02-9 12:15 |
2000-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314087
|
9.8 |
CRITICAL
Network
|
hp
|
openvms_vax
|
VAXstations running Open VMS 5.3 through 5.5-2 with VMS DECwindows or MOTIF do not properly disable access to user accounts that exceed the break-in limit threshold for failed login attempts, which m…
|
CWE-307
mproper Restriction of Excessive Authentication Attempts
|
CVE-1999-1324
|
2024-02-9 12:15 |
1999-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314088
|
7.5 |
HIGH
Network
|
compaq
|
microcom_6000_firmware
|
Compaq/Microcom 6000 Access Integrator does not disconnect a client after a certain number of failed login attempts, which allows remote attackers to guess usernames or passwords via a brute force at…
|
CWE-307
mproper Restriction of Excessive Authentication Attempts
|
CVE-1999-1152
|
2024-02-9 12:15 |
1998-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314089
|
- |
|
pam-pgsql
|
pam-pgsql
|
SQL injection vulnerability in the libpam-pgsql library before 0.5.2 allows attackers to execute arbitrary SQL statements.
|
CWE-89
SQL Injection
|
CVE-2004-0366
|
2024-02-9 12:14 |
2004-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314090
|
- |
|
washington
|
pine
|
Integer signedness error in rfc2231_get_param from strings.c in PINE before 4.58 allows remote attackers to execute arbitrary code via an email that causes an out-of-bounds array access using a negat…
|
CWE-129
Improper Validation of Array Index
|
CVE-2003-0721
|
2024-02-9 12:14 |
2003-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|