273001
|
9.3 |
HIGH
|
apple samba
|
xcode samba
|
distcc 2.x, as used in XCode 1.5 and others, when not configured to restrict access to the server port, allows remote attackers to execute arbitrary commands via compilation jobs, which are executed …
|
CWE-16
環境設定
|
CVE-2004-2687
|
2008-09-5 13:00 |
2004-12-31 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
273002
|
9.0 |
HIGH
|
aspdotnetstorefront
|
aspdotnetstorefront
|
Unrestricted file upload vulnerability in AspDotNetStorefront 3.3 allows remote authenticated administrators to upload arbitrary files with executable extensions via admin/images.aspx.
|
CWE-264
認可・権限・アクセス制御
|
CVE-2004-2700
|
2008-09-5 13:00 |
2004-12-31 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
273003
|
5.0 |
MEDIUM
|
phrozensmoke
|
gyach_enhanced
|
Unspecified vulnerability in Gyach Enhanced (Gyach-E) before 1.0.4 allows remote attackers to cause a denial of service (crash) via conference packets with error messages.
|
NVD-CWE-noinfo CWE-20
不適切な入力確認
|
CVE-2004-2706
|
2008-09-5 13:00 |
2004-12-31 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
273004
|
7.2 |
HIGH
|
ibm
|
aix
|
Unspecified vulnerability in crontab in IBM AIX 3.2 allows local users to gain root privileges via unknown attack vectors.
|
NVD-CWE-noinfo
|
CVE-1999-1589
|
2008-09-5 13:00 |
1999-12-31 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
273005
|
5.0 |
MEDIUM
|
coxco_support
|
a-cart metacart midicart_asp midicart_asp_maxi midicart_asp_plus salescart-pro salescart-std
|
MidiCart stores the midicart.mdb database file under the Web document root, which allows remote attackers to steal sensitive information by directly requesting the database.
|
CWE-200
情報漏えい
|
CVE-2002-1432
|
2008-09-5 13:00 |
2003-04-11 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
273006
|
4.3 |
MEDIUM
|
ikonboard
|
ikonboard
|
Cross-site scripting (XSS) vulnerability in Ikonboard 3.1.1 allows remote attackers to inject arbitrary web script or HTML via a private message with a javascript: URL in the IMG tag, in which the UR…
|
CWE-79
クロスサイト・スクリプティング(XSS)
|
CVE-2002-2230
|
2008-09-5 13:00 |
2002-12-31 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
273007
|
0.0 |
LOW
|
-
|
-
|
The echo service is running.
|
NVD-CWE-Other
|
CVE-1999-0635
|
2007-07-13 13:00 |
1999-01-1 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
273008
|
0.0 |
LOW
|
-
|
-
|
This Common Vulnerabilities and Exposures (CVE) entry is a configuration issue and not a software flaw. As such, it doesn’t fit in the CVE software flaw list. The Common Vulnerability Scoring System …
|
NVD-CWE-Other
|
CVE-1999-0635
|
2007-07-13 13:00 |
1999-01-1 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
273009
|
0.0 |
LOW
|
-
|
-
|
The Echo Service is an unsecured and obsolete protocol and it should be disabled. Historically it has been used to perform denial of service attacks.
|
NVD-CWE-Other
|
CVE-1999-0635
|
2007-07-13 13:00 |
1999-01-1 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
273010
|
5.0 |
MEDIUM
|
-
|
-
|
Multiple vulnerabilities in multiple vendor implementations of the X.400 protocol allow remote attackers to cause a denial of service and possibly execute arbitrary code via an X.400 message containi…
|
NVD-CWE-Other
|
CVE-2003-0565
|
2005-10-20 13:00 |
2003-12-1 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
273011
|
5.1 |
MEDIUM
|
-
|
-
|
Two Sun security certificates have been compromised, which could allow attackers to insert malicious code such as applets and make it appear that it is signed by Sun.
|
NVD-CWE-Other
|
CVE-2000-0889
|
2005-10-20 13:00 |
2001-02-12 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|
273012
|
10.0 |
HIGH
|
-
|
-
|
Buffer overflow in post-query sample CGI program allows remote attackers to execute arbitrary commands via an HTTP POST request that contains at least 10001 parameters.
|
NVD-CWE-Other
|
CVE-2001-0291
|
2005-10-20 13:00 |
2001-05-3 |
表示
|
GitHub
Exploit DB
Packet Storm
|
|