This reference map lists the various references for FULLDISC and
provides the associated CVE entries or candidates. It uses data from
CVE version 20061101 and candidates that were active as of
2008-06-24.
Note that the list of references may not be complete.
| FULLDISC:20020717 TheServer cleartext password sillyness. |
CVE-2002-2389
|
| FULLDISC:20020719 Vulnerability found: Adobe Acrobat eBook Reader and Content Server |
CVE-2002-1016
|
| FULLDISC:20020720 Netscape Communicator META Refresh Denial of Service |
CVE-2002-2308
|
| FULLDISC:20020720 PHP Resource Exhaustion Denial of Service |
CVE-2002-2309
|
| FULLDISC:20020724 REFRESH: EUDORA MAIL 5.1.1 |
CVE-2002-2313
|
| FULLDISC:20020808 Cross-Site Scripting Issues in Falcon Web Server |
CVE-2002-2318
|
| FULLDISC:20020829 RPM verification |
CVE-2002-2204
|
| FULLDISC:20020903 Check Point statement on use of IKE Aggressive Mode |
CVE-2002-1623
|
| FULLDISC:20020917 Trillian .74 and below, ident flaw. |
CVE-2002-2390
|
| FULLDISC:20020919 iDEFENSE OSF1/Tru64 3.x vuln clarification |
CVE-2000-1031
CVE-2002-1604
CVE-2002-1605
CVE-2002-1614
CVE-2002-1616
CVE-2002-1617
|
| FULLDISC:20020920 Alsasound local b0f (not an issue if not setuid root) |
CVE-2002-1896
|
| FULLDISC:20020927 Buffer Overrun in SmartHTML Interpreter Could Allow Code Executio n (Q324096) |
CVE-2002-0692
|
| FULLDISC:20021021 kmMail XSS |
CVE-2002-1958
|
| FULLDISC:20021120 Opera 6.03/Linux crashes on HTTPS over Squid Proxy on a site |
CVE-2002-2414
|
| FULLDISC:20021124 BadBlue XSS/Information Disclosure Vulnerabilities |
CVE-2002-2289
|
| FULLDISC:20021130 Multiple pServ Remote Buffer Overflow Vulnerabilities |
CVE-2002-2295
|
| FULLDISC:20021213 Some vim problems, yet still vim much better than windows |
CVE-2002-1377
|
| FULLDISC:20030107 CuteFTP 5.0 XP, Buffer Overflow |
CVE-2003-1260
|
| FULLDISC:20030120 Advisory 01/2003: CVS remote vulnerability |
CVE-2003-0015
|
| FULLDISC:20030217 [argv] BitchX-353 Vulnerability |
CVE-2003-1450
|
| FULLDISC:20030218 Re: CSSA-2003-007.0 Advisory withdrawn. |
CVE-2002-0842
|
| FULLDISC:20030223 GOnicus System Administrator php injection |
CVE-2003-1412
|
| FULLDISC:20030223 moxftp arbitrary code execution poc/advisory |
CVE-2003-0203
|
| FULLDISC:20030302 [SCSA-008] Cross Site Scripting & Script Injection Vulnerability in PY-Livredor |
CVE-2003-1384
|
| FULLDISC:20030304 SAP R/3, account locking and RFC SDK |
CVE-2003-1035
|
| FULLDISC:20030308 Ethereal format string bug, yet still ethereal much better than windows |
CVE-2003-0081
|
| FULLDISC:20030324 Vulnerability (critical): Digital signature for Adobe Acrobat/Reader plug-in can be forged |
CVE-2002-0030
|
| FULLDISC:20030329 Sendmail: -1 gone wild |
CVE-2003-0161
|
| FULLDISC:20030406 Seti@home information leakage and remote compromise |
CVE-2003-1118
|
| FULLDISC:20030413 Misuse of Macromedia Flash Ads clickTAG Option May Lead to Privacy Breach |
CVE-2003-0208
|
| FULLDISC:20030416 [VulnWatch] Apache mod_access_referer denial of service issue |
CVE-2003-1054
|
| FULLDISC:20030422 UDP bypassing in Kerio Firewall 2.1.4 |
CVE-2003-1491
|
| FULLDISC:20030430 OpenSSH/PAM timing attack allows remote users identification |
CVE-2003-0190
|
| FULLDISC:20030506 youbin local root exploit + advisory |
CVE-2003-0269
|
| FULLDISC:20030509 ltris-and-slashem-tty possible trouble |
CVE-2003-1473
CVE-2003-1474
|
| FULLDISC:20030510 [forward]Apple Safari and Konqueror Embedded Common Name Verification Vulnerability |
CVE-2003-0370
|
| FULLDISC:20030519 emacs 21.3 fixes security bugs |
CVE-2003-1232
|
| FULLDISC:20030610 mnogosearch 3.1.20 and 3.2.10 buffer overflow |
CVE-2003-0436
CVE-2003-0437
|
| FULLDISC:20030612 libmysqlclient 4.x and below mysql_real_connect() buffer overflow. |
CVE-2003-1331
|
| FULLDISC:20030613 -10Day CERT Advisory on PDF Files |
CVE-2003-0434
|
| FULLDISC:20030617 Cross-Site Scripting in Unparsable XML Files (GM#013-IE) |
CVE-2003-0446
|
| FULLDISC:20030617 Script Injection to Custom HTTP Errors in Local Zone (GM#014-IE) |
CVE-2003-0447
|
| FULLDISC:20030618 SQL Inject in ProFTPD login against Postgresql using mod_sql |
CVE-2003-0500
|
| FULLDISC:20030622 Symantec ActiveX control buffer overflow |
CVE-2003-0470
|
| FULLDISC:20030625 Re: Internet Explorer >=5.0 : Buffer overflow |
CVE-2003-0469
|
| FULLDISC:20030701 PoC for Internet Explorer >=5.0 buffer overflow (trivial exploit for hard case). |
CVE-2003-0469
|
| FULLDISC:20030704 Essentia Web Server 2.12 (Linux) |
CVE-2002-0313
|
| FULLDISC:20030705 [Vulnerability] : ProductCart database file can be downloaded remotely |
CVE-2003-1304
|
| FULLDISC:20030707 Internet Explorer 6 DoS Bug |
CVE-2003-0519
|
| FULLDISC:20030708 Fwd: xbl vulnerabilty |
CVE-2003-0535
|
| FULLDISC:20030709 IE Object Type Overflow Exploit |
CVE-2003-0344
|
| FULLDISC:20030711 Trend Micro ActiveX Multiple Overflows |
CVE-2003-0646
|
| FULLDISC:20030712 DoS - Polycom MGC 25 Control Port |
CVE-2003-0556
|
| FULLDISC:20030714 [sec-labs] Remote Denial of Service vulnerability in NeoModus Direct Connect 1.0 build 9 |
CVE-2003-0554
|
| FULLDISC:20030718 (no subject) |
CVE-2003-0567
|
| FULLDISC:20030720 CGI.pm vulnerable to Cross-site Scripting. |
CVE-2003-0615
|
| FULLDISC:20030721 Microsoft Windows 2000 RPC DCOM Interface DOS AND Privilege Escalation Vulnerability |
CVE-2003-0605
|
| FULLDISC:20030726 Re: The French BUGTRAQ (New Win RPC Exploit) |
CVE-2003-0352
|
| FULLDISC:20030729 KDE Security Advisory: Konqueror Referrer Authentication Leak |
CVE-2003-0459
|
| FULLDISC:20030730 rpcdcom Universal offsets |
CVE-2003-0352
|
| FULLDISC:20030804 Postfix 1.1.12 remote DoS / Postfix 1.1.11 bounce scanning |
CVE-2003-0540
|
| FULLDISC:20030902 New Microsoft Internet Explorer mshtml.dll Denial of Service? |
CVE-2003-1048
|
| FULLDISC:20030907 BAD NEWS: Microsoft Security Bulletin MS03-032 |
CVE-2003-0838
|
| FULLDISC:20030910 Buffer overflow in MySQL |
CVE-2003-0780
|
| FULLDISC:20030911 Pine: .procmailrc rule against integer overflow |
CVE-2003-0721
|
| FULLDISC:20030915 new ssh exploit? |
CVE-2003-0693
|
| FULLDISC:20030915 openssh remote exploit |
CVE-2003-0693
|
| FULLDISC:20030916 The lowdown on SSH vulnerability |
CVE-2003-0693
|
| FULLDISC:20030917 Sendmail 8.12.9 prescan bug (a new one) [CAN-2003-0694] |
CVE-2003-0694
|
| FULLDISC:20030919 lsh patch (was Re: [Full-Disclosure] new ssh exploit?) |
CVE-2003-0826
|
| FULLDISC:20030924 [OpenPKG-SA-2003.042] OpenPKG Security Advisory (openssh) |
CVE-2003-0786
CVE-2003-0787
|
| FULLDISC:20030929 [OpenSSL Advisory] Vulnerabilities in ASN.1 parsing |
CVE-2003-0543
CVE-2003-0544
CVE-2003-0545
|
| FULLDISC:20031008 ltrace bug |
CVE-2004-0172
|
| FULLDISC:20031010 Re : [VERY] BAD news on RPC DCOM Exploit |
CVE-2003-0813
|
| FULLDISC:20031010 Re: Bad news on RPC DCOM vulnerability |
CVE-2003-0813
|
| FULLDISC:20031011 Bad news on RPC DCOM2 vulnerability |
CVE-2003-0813
|
| FULLDISC:20031014 Another ProFTPd root EXPLOIT ? |
CVE-2003-0831
|
| FULLDISC:20031015 Mod-Throttle [was: client attacks server - XSS] |
CVE-2003-1502
|
| FULLDISC:20031016 Microsoft Local Troubleshooter ActiveX control buffer overflow |
CVE-2003-0662
|
| FULLDISC:20031019 ByteHoard Directory Traversal Vulnerability |
CVE-2003-1499
|
| FULLDISC:20031019 Caucho Resin 2.x - Cross Site Scripting |
CVE-2003-1513
|
| FULLDISC:20031022 Fun with /bin/ls, yet still ls better than windows |
CVE-2003-0853
CVE-2003-0854
|
| FULLDISC:20031022 Sylpheed-claws format string bug, yet still sylpheed much better than windows |
CVE-2003-0852
|
| FULLDISC:20031024 Vulnerability in MERCUR Mail Server v4.2 SP3 and below |
CVE-2003-1177
|
| FULLDISC:20031026 Java 1.4.2_02 InsecurityManager JVM crash |
CVE-2003-1134
|
| FULLDISC:20031027 Bytehoard File Disclosure VUlnerability Sequel |
CVE-2003-1153
|
| FULLDISC:20031028 STG Security Advisory: [SSA-20031025-05] InfronTech WebTide 7.04 Directory and File Disclosure Vulnerability |
CVE-2003-1152
|
| FULLDISC:20031031 XSS In mldonkey - But.... |
CVE-2003-1164
|
| FULLDISC:20031101 DATEV Nutzungskontrolle Bypassing (REG) |
CVE-2003-1169
|
| FULLDISC:20031102 [bWM#017] Cross-Site-Scripting @ PHPKIT |
CVE-2003-1187
|
| FULLDISC:20031103 Corsaire Security Advisory: PeopleSoft PeopleBooks Search CGI multiple argument issues |
CVE-2003-0626
CVE-2003-0627
|
| FULLDISC:20031103 Liteserve Buffer Overflow in Handling Server's Log |
CVE-2003-1144
|
| FULLDISC:20031104 OpenBSD kernel overflow, yet still *BSD much better than windows |
CVE-2003-0955
|
| FULLDISC:20031123 Thomnson TCM315 Denial of service |
CVE-2003-1085
|
| FULLDISC:20031123 VieNuke VieBoard SQL Injection Vulnerability... again |
CVE-2003-1195
|
| FULLDISC:20031124 Thomnson TCM315 Denial of service |
CVE-2003-1085
|
| FULLDISC:20040105 firewall security bug? |
CVE-2004-1799
|
| FULLDISC:20040108 Yahoo Instant Messenger Long Filename Downloading Buffer Overflow |
CVE-2004-0043
|
| FULLDISC:20040109 Directory Traversal in Accipiter Direct Server 6.0 |
CVE-2004-0072
|
| FULLDISC:20040112 SRT2004-01-9-1022 - Symantec LiveUpdate allows local users to become SYSTEM |
CVE-2003-0994
|
| FULLDISC:20040123 Finjan SurfinGate Vulnerability |
CVE-2004-2107
|
| FULLDISC:20040126 Advisory 01/2004: 12 x Gaim remote overflows |
CVE-2004-0005
CVE-2004-0006
CVE-2004-0007
CVE-2004-0008
|
| FULLDISC:20040128 Dotnetnuke Multiple Vulnerabilities |
CVE-2004-2323
CVE-2004-2324
CVE-2004-2325
|
| FULLDISC:20040201 Proofpoint Protection Server remote MySQL root user vulnerability |
CVE-2004-2357
|
| FULLDISC:20040202 0verkill - little simple vulnerability. |
CVE-2004-0238
|
| FULLDISC:20040204 Remote openbsd crash with ip6, yet still openbsd much better than windows |
CVE-2004-0257
|
| FULLDISC:20040206 CactuSoft CactuShop 5.0 Lite shopping cart software backdoor |
CVE-2004-0260
|
| FULLDISC:20040206 Open Journal Blog Authenticaion Bypassing Vulnerability |
CVE-2004-0261
|
| FULLDISC:20040206 [apache-ssl] Apache-SSL security advisory - apache_1.3.28+ssl_1.52 and prior |
CVE-2004-0009
|
| FULLDISC:20040207 (no subject) |
CVE-2004-2090
|
| FULLDISC:20040207 DreamFTP Server 1.02 Buffer Overflow |
CVE-2004-0277
|
| FULLDISC:20040208 TrackMania Demo Denial of Service |
CVE-2004-2077
|
| FULLDISC:20040209 Red-M Red-Alert Multiple Vulnerabilities |
CVE-2004-2078
CVE-2004-2079
CVE-2004-2080
|
| FULLDISC:20040210 Re: HelpCtr - allow open any page or run |
CVE-2004-0474
|
| FULLDISC:20040210 XBOX EvolutionX ftp 'cd' command and telnet 'dir' buffer overflow |
CVE-2004-0268
|
| FULLDISC:20040213 Re: HelpCtr - allow open any page or run |
CVE-2004-0474
|
| FULLDISC:20040215 GAYER THAN AIDS ADVISORY #01: IE 5 remote code execution |
CVE-2004-0566
|
| FULLDISC:20040216 EarlyImpact ProductCart shopping cart software multiple security vulnerabilities |
CVE-2004-2172
CVE-2004-2173
CVE-2004-2174
|
| FULLDISC:20040216 Symantec FireWall/VPN Appliance model 200 leak of security |
CVE-2004-0190
|
| FULLDISC:20040218 Second critical mremap() bug found in all Linux kernels |
CVE-2004-0077
|
| FULLDISC:20040222 GateKeeper Pro 4.7 buffer overflow |
CVE-2004-0326
|
| FULLDISC:20040223 Re: [Full-Disclosure] Proofpoint Protection Server remote MySQL root user vulnerability |
CVE-2004-2357
|
| FULLDISC:20040223 Re: [SECURITY] [DSA 447-1] New hsftp packages fix format string vulnerability |
CVE-2004-0159
|
| FULLDISC:20040224 Advisory 02/2004: Trillian remote overflows |
CVE-2004-2304
CVE-2004-2370
|
| FULLDISC:20040224 STG Security Advisory: [SSA-20040217-06] Apache for cygwin directory traversal vulnerability |
CVE-2004-0173
|
| FULLDISC:20040226 PerfectNav Crashes IE |
CVE-2004-2382
|
| FULLDISC:20040301 Nortel Networks Wireless LAN Access Point 2200 DoS + PoC |
CVE-2004-2549
|
| FULLDISC:20040301 Smashing "XBoard 4.2.7(All versions)" For Fun & Profit.*Unpublished Local Stack Overflow Vulnerablity! |
CVE-2004-2552
|
| FULLDISC:20040302 03-02-04 XSS Bug in NetScreen-SA 5000 Series of SSL VPN appliance |
CVE-2004-0347
|
| FULLDISC:20040303 Adobe Acrobat Reader XML Forms Data Format Buffer Overflow |
CVE-2004-0194
|
| FULLDISC:20040303 Spider Sales shopping cart software multiple security vulnerabilities |
CVE-2004-0350
CVE-2004-0351
|
| FULLDISC:2004031 CactuSoft CactuShop v5.x shopping cart software multiple security vulnerabilities |
CVE-2004-1882
|
| FULLDISC:20040310 Corsaire Security Advisory: Multiple vendor HTTP user agent cookie path traversal issue |
CVE-2003-0513
CVE-2003-0514
CVE-2003-0592
CVE-2003-0593
CVE-2003-0594
|
| FULLDISC:20040322 AIX 4.3.3 has make sgid 0? |
CVE-2004-2312
|
| FULLDISC:20040323 Dark Age of Camelot login client vulnerability to man in the middle attack |
CVE-2004-1855
|
| FULLDISC:20040323 Re: AIX 4.3.3 has make sgid 0? |
CVE-2004-2312
|
| FULLDISC:20040326 Nessus stores credentials in plain text |
CVE-2004-2722
|
| FULLDISC:20040327 NessusWX stores credentials in plain text |
CVE-2004-2723
|
| FULLDISC:20040402 Buffer Overflow in HAHTsite Scenario Server 5.1 |
CVE-2004-1763
|
| FULLDISC:20040404 Texutil symlink vulnerability. |
CVE-2004-1894
|
| FULLDISC:20040405 iDEFENSE Security Advisory 04.05.04: Perl win32_stat Function |
CVE-2004-0377
|
| FULLDISC:20040407 Mcafee FreeScan - Remote Buffer Overflow and Private Information Disclosure |
CVE-2004-1906
CVE-2004-1908
|
| FULLDISC:20040407 Race conditions in security dialogs |
CVE-2004-0762
CVE-2004-2659
CVE-2006-2094
|
| FULLDISC:20040407 Solaris vfs_getvfssw() local kernel exploit |
CVE-2004-2686
|
| FULLDISC:20040407 Symantec, McAfee and Panda ActiveX controls |
CVE-2004-1906
CVE-2004-1908
CVE-2004-1910
|
| FULLDISC:20040413 EEYE: Windows Expand-Down Data Segment Local Privilege Escalation |
CVE-2003-0910
|
| FULLDISC:20040413 EEYE: Windows Local Security Authority Service Remote Buffer Overflow |
CVE-2003-0533
|
| FULLDISC:20040413 EEYE: Windows VDM TIB Local Privilege Escalation |
CVE-2004-0118
|
| FULLDISC:20040413 Microsoft Help and Support Center argument injection vulnerability |
CVE-2003-0907
|
| FULLDISC:20040414 Eudora 6.0.3 nested MIME DoS |
CVE-2004-1944
|
| FULLDISC:20040414 [SCAN Associates Sdn Bhd Security Advisory] Postnuke v 0.726 and below SQL injection |
CVE-2004-1949
|
| FULLDISC:20040425 Microsoft's Explorer and Internet Explorer long share name buffer overflow. |
CVE-2004-0214
|
| FULLDISC:20040427 Phenoelit Advisory <wir-haben-auch-mal-was-gefunden #0815 ++++> |
CVE-2004-2626
|
| FULLDISC:20040427 SMC Routers have remote administration enabled by default |
CVE-2004-1976
|
| FULLDISC:20040429 Re: Phenoelit Advisory |
CVE-2004-2626
|
| FULLDISC:20040429 Zonet ZSR1104WE Router problem |
CVE-2004-2637
|
| FULLDISC:20040430 Critical bug in Web Wiz Forum |
CVE-2004-2733
|
| FULLDISC:20040501 LHa buffer overflows and directory traversal problems |
CVE-2004-0234
CVE-2004-0235
|
| FULLDISC:20040502 Lha local stack overflow Proof Of Concept Code |
CVE-2004-0234
|
| FULLDISC:20040505 Corsaire Security Advisory - Verity Ultraseek path disclosure issue |
CVE-2004-0050
|
| FULLDISC:20040506 Advisory: Heimdal kadmind version4 remote heap overflow |
CVE-2004-0434
|
| FULLDISC:20040506 Buffer overflows in exim, yet still exim much better than windows |
CVE-2004-0399
CVE-2004-0400
|
| FULLDISC:20040507 Eudora file URL buffer overflow |
CVE-2004-2005
|
| FULLDISC:20040507 Pound <=1.5 Remote Exploit (Format string bug) |
CVE-2004-2026
|
| FULLDISC:20040509 Icecast 2.0.0 preauth overflow |
CVE-2004-2027
|
| FULLDISC:20040510 OpenServer 5.0.5 OpenServer 5.0.6 OpenServer 5.0.7 : X sessions which are not started by scologin cannot use the X authorization protocol |
CVE-2004-0390
|
| FULLDISC:20040511 Linux Kernel sctp_setsockopt() Integer Overflow |
CVE-2004-2013
|
| FULLDISC:20040512 EEYE: Symantec Multiple Firewall DNS Response Denial-of-Service |
CVE-2004-0445
|
| FULLDISC:20040512 EEYE: Symantec Multiple Firewall NBNS Response Processing Stack Overflow |
CVE-2004-0444
|
| FULLDISC:20040512 EEYE: Symantec Multiple Firewall NBNS Response Remote Heap Corruption |
CVE-2004-0444
|
| FULLDISC:20040512 EEYE: Symantec Multiple Firewall Remote DNS KERNEL Overflow |
CVE-2004-0444
|
| FULLDISC:20040512 MS04-015 - Windows Help Center - Dvdupgrade |
CVE-2004-0199
|
| FULLDISC:20040512 Mdaemon 7.0.1 IMAP overflow. |
CVE-2004-2292
|
| FULLDISC:20040512 Sweex 802.11g router/accesspoint config disclosure / remote config |
CVE-2004-2455
|
| FULLDISC:20040513 802.11b (others) single packet DoS |
CVE-2004-0459
|
| FULLDISC:20040514 IE Crash - Anyone Seen This Before? |
CVE-2004-0479
|
| FULLDISC:20040516 Vuln. MacOSX/Safari: Remote help-call, execute scripts |
CVE-2004-0486
|
| FULLDISC:20040516 WebCT: Cross Site Scripting Vulnerability |
CVE-2004-2015
|
| FULLDISC:20040517 Buffer Overflow in ActivePerl ? |
CVE-2004-2022
|
| FULLDISC:20040517 OpenBSD procfs |
CVE-2004-0482
|
| FULLDISC:20040517 RE: Buffer Overflow in ActivePerl ? |
CVE-2004-2022
|
| FULLDISC:20040517 RE: [Full-Disclosure] Buffer Overflow in ActivePerl ? |
CVE-2004-2286
|
| FULLDISC:20040517 ROCKET SCIENCE: Outllook 2003 |
CVE-2004-0503
|
| FULLDISC:20040517 [waraxe-2004-SA#029 - Possible remote file inclusion in PhpNuke 6.x - 7.3] |
CVE-2004-2018
|
| FULLDISC:20040517 mod_ssl ssl_util_uuencode_binary potential problem |
CVE-2004-0488
|
| FULLDISC:20040518 Advisory 05/2004: phpMyFAQ local file inclusion vulnerability |
CVE-2004-2255
CVE-2004-2256
|
| FULLDISC:20040518 Re: Buffer Overflow in ActivePerl ? |
CVE-2004-2022
|
| FULLDISC:20040518 Re[2]: [Full-Disclosure] Buffer Overflow in ActivePerl ? |
CVE-2004-2022
|
| FULLDISC:20040519 Advisory 06/2004: libneon date parsing vulnerability |
CVE-2004-0398
|
| FULLDISC:20040519 Advisory 07/2004: CVS remote vulnerability |
CVE-2004-0396
|
| FULLDISC:20040519 Advisory 08/2004: Subversion remote vulnerability |
CVE-2004-0397
|
| FULLDISC:20040519 Ph0rum phorum_uriauth replay attack |
CVE-2004-2243
|
| FULLDISC:20040524 SSH URI handler remote arbitrary code execution |
CVE-2004-0489
|
| FULLDISC:20040527 DoS in MiniShare 1.3.2 |
CVE-2004-2035
|
| FULLDISC:20040529 [waraxe-2004-SA#031 - Multiple vulnerabilities in e107 version 0.615] |
CVE-2004-2039
CVE-2004-2040
CVE-2004-2041
CVE-2004-2042
|
| FULLDISC:20040602 180 Solutions Exploits and Toolbars Hacking Patched Users(I.E Exploits) |
CVE-2004-0549
|
| FULLDISC:20040602 Firebird [ AND Interbase 7 ] Database Remote Database Name Overflow |
CVE-2004-2043
|
| FULLDISC:20040603 Phishing for Opera (GM#007-OP) |
CVE-2004-0537
|
| FULLDISC:20040603 Surgemail - Multiple Vulnerabilities |
CVE-2004-2547
CVE-2004-2548
|
| FULLDISC:20040604 [CYSA-0329] Password recovery vulnerability in FoolProof Security 3.9.x for Windows 95/9 |
CVE-2004-2555
|
| FULLDISC:20040606 Internet explorer 6 execution of arbitrary code (An analysis of the 180 Solutions Trojan) |
CVE-2004-0549
|
| FULLDISC:20040609 ASPDOTNETSTOREFRONT ASPDOTNETSTOREFRONT Improper Upload Validation |
CVE-2004-2700
|
| FULLDISC:20040609 Advisory 09/2004: More CVS remote vulnerabilities |
CVE-2004-0414
CVE-2004-0416
CVE-2004-0417
CVE-2004-0418
CVE-2004-1471
|
| FULLDISC:20040609 Advisory: ASPDOTNETSTOREFRONT Improper Session Validation |
CVE-2004-2699
|
| FULLDISC:20040609 [FULL DISCLOSURE] ASPDOTNETSTOREFRONT Cross-Site Scripting Vulnerability |
CVE-2004-2701
|
| FULLDISC:20040610 Buffer overflow in apache mod_proxy,yet still apache much better than windows |
CVE-2004-0492
|
| FULLDISC:20040610 [0xbadc0ded #04] smtp.proxy <= 1.1.3 |
CVE-2004-2417
|
| FULLDISC:20040611 [waraxe-2004-SA#032 - Multiple security flaws in PhpNuke 6.x - 7.3] |
CVE-2004-2295
CVE-2004-2297
|
| FULLDISC:20040613 VP-ASP Shopping Cart Multiple Vulnerabilities |
CVE-2004-2411
CVE-2004-2413
|
| FULLDISC:20040614 Internet Explorer Remote Null Pointer Crash(mshtml.dll) |
CVE-2004-2434
|
| FULLDISC:20040614 Serendipity Blog vuln |
CVE-2006-1910
|
| FULLDISC:20040615 RE: Internet Explorer Remote Null Pointer Crash(mshtml.dll) |
CVE-2004-2434
|
| FULLDISC:20040616 "IBM Access Support" (eGatherer) Activex Dangerous Methods Vulnerability |
CVE-2004-2663
|
| FULLDISC:20040616 Checkpoint Firewall-1 IKE Vendor ID information leakage |
CVE-2004-2679
|
| FULLDISC:20040621 [Full-Disclosure] iDEFENSE Security Advisory 06.21.04 - GNU Radius SNMP Invalid OID Denial of Service Vulnerability |
CVE-2004-0576
|
| FULLDISC:20040622 Wireless Modem (BT Voyager 2000 Wireless ADSL Router cleartext password) |
CVE-2004-0616
|
| FULLDISC:20040627 ZH2004-14SA (security advisory):Sql Injection in Infinity WEB |
CVE-2004-0625
|
| FULLDISC:20040628 DoS in apache httpd 2.0.49, yet still apache much better than windows |
CVE-2004-0493
|
| FULLDISC:20040629 DoS in popclient 3.0b6 |
CVE-2004-0666
|
| FULLDISC:20040630 DSL router Prestige 650HW-31 |
CVE-2004-0670
|
| FULLDISC:20040701 iDEFENSE Security Advisory 07.01.04: WinGate Information Disclosure |
CVE-2004-0577
CVE-2004-0578
|
| FULLDISC:20040702 Multiple Vulnerabilities in Easy Chat Server 1.2 |
CVE-2004-2466
CVE-2004-2467
|
| FULLDISC:20040702 pavuk buffer overflow |
CVE-2004-0456
|
| FULLDISC:20040703 Re: SUSE Security Announcement: kernel (SUSE-SA:2004:020) |
CVE-2004-0592
|
| FULLDISC:20040705 Multiples vulnerabilities in JAWS |
CVE-2004-2444
CVE-2004-2445
|
| FULLDISC:20040706 Multiples vulnerabilities in JAWS |
CVE-2004-2443
|
| FULLDISC:20040707 Re: shell:windows command question |
CVE-2004-0572
|
| FULLDISC:20040707 shell:windows command question |
CVE-2004-0648
|
| FULLDISC:20040708 RE: php-exec-dir vulnerable after latest upgrade |
CVE-2004-2692
|
| FULLDISC:20040708 Re: php-exec-dir vulnerable after latest upgrade |
CVE-2004-2692
|
| FULLDISC:20040708 php-exec-dir vulnerable after latest upgrade |
CVE-2004-2692
|
| FULLDISC:20040712 Brand New Hole: Internet Explorer: HijackClick 3 |
CVE-2004-0841
|
| FULLDISC:20040714 Advisory 11/2004: PHP memory_limit remote vulnerability |
CVE-2004-0594
|
| FULLDISC:20040714 Advisory 12/2004: PHP strip_tags() bypass vulnerability |
CVE-2004-0595
|
| FULLDISC:20040714 HtmlHelp - .CHM File Heap Overflow |
CVE-2004-0201
|
| FULLDISC:20040715 XSS in Board Power forum |
CVE-2004-1441
|
| FULLDISC:20040717 [FMADV] Format String Bug in OllyDbg 1.10 |
CVE-2004-0733
|
| FULLDISC:20040718 Cross-Site Scripting email Outblaze |
CVE-2004-2625
|
| FULLDISC:20040719 Buffer overflow in Whisper FTP Surfer 1.0.7 |
CVE-2004-0739
|
| FULLDISC:20040723 Crash IE with 11 bytes ;) |
CVE-2004-0842
|
| FULLDISC:20040725 Mozilla Firefox Certificate Spoofing |
CVE-2004-0763
|
| FULLDISC:20040726 Opera 7.53 (Build 3850) Address Bar Spoofing Issue |
CVE-2004-2491
|
| FULLDISC:20040728 Re: Crash IE with 11 bytes ;) |
CVE-2004-0842
|
| FULLDISC:20040728 Re: Internet Explorer Remote Null Pointer Crash(mshtml.dll) |
CVE-2004-2434
|
| FULLDISC:20040728 SoX buffer overflows when handling .WAV files |
CVE-2004-0557
|
| FULLDISC:20040801 Remotely Exploitable DoS Flaw in XP and 2003 |
CVE-2004-2527
|
| FULLDISC:20040802 Benchmark Designs' WHM Autopilot backdoor vulnerability to plain-text password. |
CVE-2004-2524
|
| FULLDISC:20040802 IBM Directory Server - ldacgi.exe |
CVE-2004-2526
|
| FULLDISC:20040804 Bug@thttpd |
CVE-2004-2628
|
| FULLDISC:20040804 Multiple Vulnerabilities in Free Web Chat |
CVE-2004-2646
CVE-2004-2647
|
| FULLDISC:20040805 Opera: Location, Location, Location |
CVE-2004-2570
|
| FULLDISC:20040808 Serv-U 3.x, 4.x, 5.x local privilege escalation vulnerability |
CVE-2004-2532
|
| FULLDISC:20040811 ISS BlackIce Server Protect Unprivileged User Attack |
CVE-2004-1714
|
| FULLDISC:20040816 SQL Injection in CACTI |
CVE-2004-1736
CVE-2004-1737
|
| FULLDISC:20040817 Gallery 1.4.4 save_photos.php PHP Insertion Proof of Concept |
CVE-2004-1466
|
| FULLDISC:20040817 Multiple remote vulnerabilities in lukemftpd aka. tnftpd |
CVE-2004-0794
|
| FULLDISC:20040818 Re: gnu-less Format String Vulnerability |
CVE-2004-2264
|
| FULLDISC:20040818 What A Drag II XP SP2 |
CVE-2004-0839
|
| FULLDISC:20040818 gnu-less Format String Vulnerability |
CVE-2004-2264
|
| FULLDISC:20040819 PADS Simple Stack Overflow |
CVE-2004-2269
|
| FULLDISC:20040819 Unsecure file permission of ZoneAlarm pro. |
CVE-2004-2713
|
| FULLDISC:20040820 CAU-2004-0002 - imwheel Predictable PidFile Name Race Condition |
CVE-2004-2698
|
| FULLDISC:20040820 Re: Unsecure file permission of ZoneAlarm pro. |
CVE-2004-2713
|
| FULLDISC:20040821 Re: Unsecure file permission of ZoneAlarm pro. |
CVE-2004-2713
|
| FULLDISC:20040822 [PoC] Nasty bug(s) found in Axis Network Camera/Video Servers |
CVE-2004-2425
CVE-2004-2426
CVE-2004-2427
|
| FULLDISC:20040824 Re: [Full-Disclosure] XSS in Plesk 7.1 Reloaded |
CVE-2004-2702
|
| FULLDISC:20040824 XSS in Plesk 7.1 Reloaded |
CVE-2004-2702
|
| FULLDISC:20040824 a2ps executing shell commands from file name |
CVE-2004-1170
|
| FULLDISC:20040827 DoS in Chat Anywhere 2.72a |
CVE-2004-2724
|
| FULLDISC:20040827 Power Quest Deploy Center 5.5 boot disks |
CVE-2004-2609
|
| FULLDISC:20040830 MSInfo Buffer Overflow |
CVE-2004-1649
|
| FULLDISC:20040831 Axis Network Camera and Video Server Security Advisory |
CVE-2004-2425
CVE-2004-2426
|
| FULLDISC:20040902 AW: [Full-Disclosure] New Microsoft Internet Explorer mshtml.dll |
CVE-2003-1048
|
| FULLDISC:20040902 [SHATTER Team Security Alert] Multiple vulnerabilities in Oracle Database Server |
CVE-2004-1774
|
| FULLDISC:20040903 Re: [Full-Disclosure] New Microsoft Internet Explorer mshtml.dll Denial of Service? |
CVE-2003-1048
|
| FULLDISC:20040903 [RLSA_01-2004] QNX PPPoEd local root vulnerabilities |
CVE-2004-1390
CVE-2004-1391
|
| FULLDISC:20040905 Buffer Overflow in DBMS_SYSTEM.KSDWRT() in Oracle8i - 9i |
CVE-2004-0638
|
| FULLDISC:20040907 Corsaire Security Advisory - Business Objects WebIntelligence XSS issue |
CVE-2004-0534
|
| FULLDISC:20040907 Corsaire Security Advisory - Business Objects WebIntelligence arbitrary document deletion issue |
CVE-2004-0533
|
| FULLDISC:20040907 mpg123 buffer overflow vulnerability |
CVE-2004-0805
|
| FULLDISC:20040914 Crash in Lords of the Realm III 1.01 |
CVE-2004-2165
|
| FULLDISC:20040916 FlowSecurity.org: Local Stack Overflow on htpasswd apache 1.3.31 advsory. |
CVE-2006-1078
|
| FULLDISC:20040916 Freeze in Pigeon Server 3.02.0143 |
CVE-2004-1688
|
| FULLDISC:20040918 Re: GoogleToolbar:About -- Allows Script Injection |
CVE-2004-2475
|
| FULLDISC:20040921 Pinnacle ShowCenter Skin Denial of Service |
CVE-2004-1699
|
| FULLDISC:20040922 Remote buffer overflow in MDaemon IMAP and SMTP server |
CVE-2004-1546
|
| FULLDISC:20040923 Motorola Wireless Router WR850G Authentication Circumvention |
CVE-2004-1550
|
| FULLDISC:20040923 Multiple vulnerabilities in ActivePost Standard 3.1 |
CVE-2004-2616
|
| FULLDISC:20040926 HTTP Response Splitting and SQL injection in megabbs forum |
CVE-2004-2145
CVE-2004-2146
|
| FULLDISC:20040928 Serendipity 0.7-beta1 SQL Injection PoC |
CVE-2004-2157
CVE-2004-2158
|
| FULLDISC:20040928 directory traversal in ParaChat Server 5.5 |
CVE-2004-1568
|
| FULLDISC:20040929 Re: directory traversal in ParaChat Server 5.5 |
CVE-2004-1568
|
| FULLDISC:20040930 Multiple vulnerabilities in w-agora forum |
CVE-2004-1562
CVE-2004-1563
CVE-2004-1564
CVE-2004-1565
|
| FULLDISC:20041006 Directory traversal in Tridcomm 1.3 |
CVE-2004-1583
|
| FULLDISC:20041008 Limited \secure\ buffer-overflow in some old Monolith games |
CVE-2004-1587
|
| FULLDISC:20041010 unarj dir-transversal bug (../../../..) |
CVE-2004-1027
|
| FULLDISC:20041011 CJOverkill 4.0.3 XSS Proof of Concept |
CVE-2004-2193
|
| FULLDISC:20041011 Turbo Traffic Trader Nitro v1.0 SQL Injection & XSS Proofs of Concept |
CVE-2004-2191
CVE-2004-2192
|
| FULLDISC:20041012 Microsoft cabarc directory traversal |
CVE-2004-2643
|
| FULLDISC:20041012 [HV-HIGH] RIM Blackberry buffer overflow, DoS, data loss |
CVE-2004-1597
|
| FULLDISC:20041013 unzoo 4.4 directory travels |
CVE-2004-2190
|
| FULLDISC:20041015 Directory traversal in Yak! 2.1.2 |
CVE-2004-2184
|
| FULLDISC:20041018 Multiple vulnerabilities in Sage Saleslogix |
CVE-2004-1605
CVE-2004-1606
CVE-2004-1607
CVE-2004-1608
CVE-2004-1609
CVE-2004-1611
CVE-2004-1612
|
| FULLDISC:20041018 Web browsers - a mini-farce |
CVE-2004-1613
CVE-2004-1614
CVE-2004-1615
CVE-2004-1616
CVE-2004-1617
|
| FULLDISC:20041018: phpMyAdmin: Vulnerability in MIME-based transformation |
CVE-2004-2630
|
| FULLDISC:20041022 J2ME security vulnerabilities |
CVE-2004-2627
|
| FULLDISC:20041023 python does mangleme (with IE bugs!) |
CVE-2004-1050
|
| FULLDISC:20041025 Kaffeine Media Player Conteny Type overflow |
CVE-2004-1034
|
| FULLDISC:20041025 python does mangleme (with IE bugs!) |
CVE-2004-1050
|
| FULLDISC:20041029 Apache 1.3.33 local buffer overflow in apache 1.3.31 not fixed in .33? |
CVE-2006-1078
|
| FULLDISC:20041101 DoS in Apache 2.0.52 ? |
CVE-2004-0942
|
| FULLDISC:20041101 XDICT Buffer OverRun Vulnerability,funny :-) |
CVE-2004-1494
|
| FULLDISC:20041102 CSS in E-Mails possible E-Mail-Validity Check for Spammers? |
CVE-2004-2226
|
| FULLDISC:20041103 [HV-MED] Zip/Linux long path buffer overflow |
CVE-2004-1010
|
| FULLDISC:20041107 [New VULNERABILTY + Exploit] MiniShare, Minimal HTTP Server for Windows, Remote Buffer Overflow Exploit |
CVE-2004-2271
|
| FULLDISC:20041110 Nortel Networks Contivity VPN Client information leakage vulnerability |
CVE-2004-1105
|
| FULLDISC:20041110 [Advisory + Exploit] SlimFTPd <= 3.15 |
CVE-2004-2418
|
| FULLDISC:20041111 [waraxe-2004-SA#037 - Sql injection bug in Phorum 5.0.12 and older versions] |
CVE-2004-1518
|
| FULLDISC:20041111 ez-ipupdate format string bug |
CVE-2004-0980
|
| FULLDISC:20041114 Format string bug in Army Men RTS |
CVE-2004-1522
|
| FULLDISC:20041116 Re: [Full-Disclosure] TWiki search function allows arbitrary shell command execution |
CVE-2004-1037
|
| FULLDISC:20041116 Skype callto:// BoF technical details |
CVE-2004-1114
|
| FULLDISC:20041119 Java Vulnerabilities in Opera 7.54 |
CVE-2004-1489
|
| FULLDISC:20041122 CoffeeCup FTP Clients Buffer Overflow Vulnerability |
CVE-2004-1118
|
| FULLDISC:20041122 WeOnlyDo! COM Ftp DELUXE ActiveX Control Buffer Overflow Vulnerability |
CVE-2004-1118
|
| FULLDISC:20041124 Buffer Overflow in Open Dc Hub 0.7.14 |
CVE-2004-1127
|
| FULLDISC:20041124 Jabberd2.x remote BuffJabberd2.x remote Buffer Overflowser Overflows |
CVE-2004-0953
|
| FULLDISC:20041124 STG Security Advisory: [SSA-20041122-10] KorWeblog directory traversal vulnerability |
CVE-2004-1543
|
| FULLDISC:20041125 FIREFOX flaws: nested array sort() loop Stack overflow exception |
CVE-2004-1200
|
| FULLDISC:20041125 MSIE & FIREFOX flaws: "detailed" advisory and comments that you probably don't want to read anyway |
CVE-2004-1198
CVE-2004-1200
|
| FULLDISC:20041125 More Browser flaws on MACOSX: nested array sort() loop Stack overflow exception |
CVE-2004-1199
|
| FULLDISC:20041125 Re: MSIE flaws: nested array sort() loop Stack overflow exception |
CVE-2004-1201
|
| FULLDISC:20041125 Re: Opera flaws: nested array sort() loop Stack overflow exception |
CVE-2004-1201
|
| FULLDISC:20041126 phpCMS <= 1.2.1 Xss Vulnerability, Information disclosure |
CVE-2004-1202
CVE-2004-1203
|
| FULLDISC:20041129 Format string flaw in VMWare Workstation 4.5.2 build-8848. |
CVE-2004-2515
|
| FULLDISC:20041129 Multiple buffer overlows in WS_FTP Server Version 5.03, 2004.10.14. |
CVE-2004-1135
|
| FULLDISC:20041129 Password Disclosure for SMB Shares in KDE's Konqueror |
CVE-2004-1171
|
| FULLDISC:20041129 Privilege escalation flaw in MDaemon 7.2. |
CVE-2004-2504
|
| FULLDISC:20041129 ncpfs buffer overflow |
CVE-2004-1079
|
| FULLDISC:20041130 Re: Privilege escalation flaw in MDaemon 7.2. |
CVE-2004-2504
|
| FULLDISC:20041201 Multiple buffer overflows exist in Mercury/32, v4.01a, Dec 8 2003. |
CVE-2004-1211
|
| FULLDISC:20041206 Multiple vulnerabilities in w3who ISAPI DLL |
CVE-2004-1133
CVE-2004-1134
|
| FULLDISC:20041213 Multiple XSS Vulnerabilities in several UBB.Thread Versions |
CVE-2004-2509
CVE-2004-2510
|
| FULLDISC:20041213 Socket unreacheable in the Lithtech engine (new protocol) |
CVE-2004-1395
|
| FULLDISC:20041213 Winamp 5.07 (latest version) Remote Crash + other |
CVE-2004-1396
|
| FULLDISC:20041214 OpenText FirstClass 8.0 HTTP Daemon /Search Remote DoS Vulnerability |
CVE-2004-2496
|
| FULLDISC:20041215 STG Security Advisory: [SSA-20041215-15] Vulnerability of uploading files with multiple extensions in MoniWiki |
CVE-2004-1545
|
| FULLDISC:20041215 fun with linux kernel |
CVE-2004-1333
CVE-2004-1334
CVE-2004-1335
|
| FULLDISC:20041220 FreezeX file access vulnerability |
CVE-2004-2648
|
| FULLDISC:20041223 Cross-Site Scripting - an industry-wide problem |
CVE-2004-1059
CVE-2004-1061
CVE-2004-1062
CVE-2004-1146
CVE-2005-0514
|
| FULLDISC:20041223 Plesk 7 Cross-Site Scripting |
CVE-2004-2702
|
| FULLDISC:20041223 STG Security Advisory: [SSA-20041220-16] PHP source injection and cross-site scripting vulnerabilities in ZeroBoard |
CVE-2004-1419
CVE-2004-2738
|
| FULLDISC:20041223 [USN-48-1] xpdf, tetex-bin vulnerabilities |
CVE-2004-1125
|
| FULLDISC:20041223 [USN-49-1] debmake vulnerability |
CVE-2004-1179
|
| FULLDISC:20050101 Two Vulnerabilities in ViewCVS |
CVE-2005-4830
CVE-2005-4831
|
| FULLDISC:20050107 Simple PHP Blog directory traversal vulnerability |
CVE-2005-0214
|
| FULLDISC:20050107 grsecurity 2.1.0 release / 5 Linux kernel advisories |
CVE-2005-0179
CVE-2005-0180
CVE-2005-0504
|
| FULLDISC:20050110 Multi-vendor AV gateway image inspection bypass vulnerability |
CVE-2005-0218
|
| FULLDISC:20050111 Apple Airport WDS DoS |
CVE-2005-0289
|
| FULLDISC:20050112 Linux kernel i386 SMP page fault handler privilege escalation |
CVE-2005-0001
|
| FULLDISC:20050112 [waraxe-2005-SA#039] - Critical Sql Injection in Sgallery module for PhpNuke |
CVE-2005-0375
CVE-2005-0376
CVE-2005-0377
|
| FULLDISC:20050114 Internet Explorer (SP2) - Remote File Download |
CVE-2005-0110
|
| FULLDISC:20050114 Re: Multi-vendor AV gateway image inspection bypass vulnerability |
CVE-2005-0218
|
| FULLDISC:20050116 Minis directory traversal vulnerability |
CVE-2005-0293
CVE-2005-0294
|
| FULLDISC:20050116 phpGiftReq SQL Injection |
CVE-2005-0292
|
| FULLDISC:20050117 Multiple Vulnerabilities in Netgear FVS318 Router |
CVE-2005-0290
CVE-2005-0291
|
| FULLDISC:20050119 Multiple vulnerabilities in Konversation |
CVE-2005-0129
CVE-2005-0130
CVE-2005-0131
|
| FULLDISC:20050121 NOVL-2005-10096251 GroupWise WebAccess error handling modules (report) |
CVE-2005-0296
|
| FULLDISC:20050122 several BO's in goldenftpd |
CVE-2005-0566
|
| FULLDISC:20050127 DMA[2005-0127a] - 'Apple OSX batch family poor use of setuid' |
CVE-2005-0125
|
| FULLDISC:20050130 Broadcast crash in Xpand Rally 1.0.0.0 |
CVE-2005-0325
|
| FULLDISC:20050201 Remotely exploitable buffer overflow vulnerability in Savant Web Server 3.1 |
CVE-2005-0338
|
| FULLDISC:20050206 Microsoft Outlook Web Access URL Injection Vulnerability |
CVE-2005-0420
|
| FULLDISC:20050206 Re: state of homograph attacks |
CVE-2005-0237
|
| FULLDISC:20050206 state of homograph attacks |
CVE-2005-0233
CVE-2005-0234
CVE-2005-0235
CVE-2005-0236
CVE-2005-0237
CVE-2005-0238
|
| FULLDISC:20050207 DMA[2005-0131a] - 'Setuid Perl PERLIO_DEBUG root owned file creation' |
CVE-2005-0155
|
| FULLDISC:20050207 DMA[2005-0131b] - 'Setuid Perl PERLIO_DEBUG |
CVE-2005-0156
|
| FULLDISC:20050208 XSS VULNERABILITY AT MODULE PostWrap |
CVE-2005-0412
|
| FULLDISC:20050209 Administrivia: List Compromised due to Mailman Vulnerability |
CVE-2005-0202
|
| FULLDISC:20050209 Internet Explorer zone spoofing with encoded URLs |
CVE-2005-0054
|
| FULLDISC:20050212 Credit Card data disclosure in CitrusDB |
CVE-2005-0229
|
| FULLDISC:20050214 Advisory: Authentication bypass in CitrusDB |
CVE-2005-0408
|
| FULLDISC:20050214 Advisory: Cross Site Scripting Vulnerability in Openconf Conference Management Software |
CVE-2005-0407
|
| FULLDISC:20050214 Advisory: Directory traversal in CitrusDB |
CVE-2005-0411
|
| FULLDISC:20050214 Advisory: JPEG EXIF information disclosure |
CVE-2005-0406
|
| FULLDISC:20050214 Advisory: SQL-Injection in CitrusDB |
CVE-2005-0410
|
| FULLDISC:20050214 Advisory: Upload Authorization bypass in CitrusDB |
CVE-2005-0409
|
| FULLDISC:20050215 Kayako eSupport v2.3.1 Support Tracker XSS |
CVE-2005-0487
|
| FULLDISC:20050215 linux kernel 2.6 fun. windoze is a joke |
CVE-2005-0529
CVE-2005-0530
CVE-2005-0531
CVE-2005-0532
|
| FULLDISC:20050217 Advisory: Multiple Vulnerabilities in BibORB |
CVE-2005-0251
CVE-2005-0252
CVE-2005-0253
CVE-2005-0254
|
| FULLDISC:20050219 Thomson TCW690 Denial Of Service Vulnerability |
CVE-2003-1085
|
| FULLDISC:20050219 pMachine Pro / pMachine Free Remote Code Execution |
CVE-2005-0513
|
| FULLDISC:20050221 SD Server 4.0.70 Directory Traversal Bug |
CVE-2005-0507
|
| FULLDISC:20050221 WindowsXPSP2 script-initiated popup window |
CVE-2005-0500
|
| FULLDISC:20050222 unace-1.2b multiple buffer overflows and directory traversal bugs |
CVE-2005-0160
CVE-2005-0161
|
| FULLDISC:20050224 Cyclades AlterPath Manager Vulnerabilities |
CVE-2005-0540
CVE-2005-0541
CVE-2005-0542
|
| FULLDISC:20050224 GAIM exploit |
CVE-2005-0573
|
| FULLDISC:20050226 Badblue HTTP Server, ext.dll buffer overflow |
CVE-2005-0595
|
| FULLDISC:20050228 Server termination in Scrapland 1.0 |
CVE-2005-0621
|
| FULLDISC:20050228 [USN-86-1] cURL vulnerability |
CVE-2005-0490
|
| FULLDISC:20050307 - Argeniss - Oracle Database Server Directory transversal |
CVE-2005-0701
|
| FULLDISC:20050308 Yahoo! Messenger Offline Mode Status Remote Buffer Overflow Vulnerability |
CVE-2005-0737
|
| FULLDISC:20050309 overwriting low kernel memory |
CVE-2005-0736
|
| FULLDISC:20050310 Multiple Vulnerabilities of PY Software Active Webcam WebServer |
CVE-2005-0730
CVE-2005-0731
CVE-2005-0732
CVE-2005-0733
CVE-2005-0734
|
| FULLDISC:20050313 Firefox 1.01 : spoofing status bar without using JavaScript |
CVE-2005-4809
|
| FULLDISC:20050313 [HAT-SQUAD] SafeNet Sentinel LM, UDP License Manager Exploit |
CVE-2005-0353
|
| FULLDISC:20050318 Java Web Start argument injection vulnerability |
CVE-2005-0836
|
| FULLDISC:20050325 Maxthon browser search bar information disclosure |
CVE-2005-0905
|
| FULLDISC:20050327 THai's Shoutbox XSS (Spoofing URL) BUG |
CVE-2005-0909
|
| FULLDISC:20050327 local root security bug in linux >= 2.4.6 <= 2.4.30-rc1 and 2.6.x.y <= 2.6.11.5 |
CVE-2005-0750
|
| FULLDISC:20050328 THai's Shoutbox correction name |
CVE-2005-0909
|
| FULLDISC:20050329 Adventia Chat |
CVE-2005-0919
|
| FULLDISC:20050329 E-Data |
CVE-2005-0924
|
| FULLDISC:20050405 MailEnable Imapd remote BoF + Exploit [x0n3-h4ck] |
CVE-2005-1014
|
| FULLDISC:20050406 Re: MailEnable Imapd remote BoF + Exploit [x0n3-h4ck] |
CVE-2005-1015
|
| FULLDISC:20050407 Cisco Linksys WET11 Password Resetting Vulnerability |
CVE-2005-1059
|
| FULLDISC:20050410 rsnapshot Security Advisory 001 |
CVE-2005-1064
|
| FULLDISC:20050412 XAMPP |
CVE-2005-1077
CVE-2005-1078
|
| FULLDISC:20050415 Use of function "log" in Perl module Net::Server |
CVE-2005-1127
|
| FULLDISC:20050416 TCP/IP Stack Vulnerability |
CVE-2005-1184
|
| FULLDISC:20050418 Re: TCP/IP Stack Vulnerability |
CVE-2005-1184
|
| FULLDISC:20050418 XSS bug in JAWS gadget Glossary (0.4-latestbeta (beta 2)) |
CVE-2005-1231
|
| FULLDISC:20050427 Privilege escalation and password protection bypass in Altiris Client Service for Windows (Version 6.0.88) |
CVE-2005-1590
|
| FULLDISC:20050430 DMA[2005-0425a] - 'ESRI ArcGIS 9.x multiple local vulnerabilities |
CVE-2005-1393
CVE-2005-1394
|
| FULLDISC:20050501 DMA[2005-0501a] - 'ARPUS/Ce setuid buffer overflow and file overwrite' |
CVE-2005-1395
CVE-2005-1396
|
| FULLDISC:20050501 Remote buffer overflow in GlobalScape Secure FTP server 3.0.2 |
CVE-2005-1415
|
| FULLDISC:20050504 Gamespy cd-key validation system: "Cd-key in use" DoS versus many games |
CVE-2005-1556
|
| FULLDISC:20050506 64 bit qmail fun |
CVE-2005-1513
CVE-2005-1514
CVE-2005-1515
|
| FULLDISC:20050506 [SEC-1 LTD] RSA SecurID Web Agent Heap Overflow |
CVE-2005-1471
|
| FULLDISC:20050508 Browser Based File Manager Administration Vulnerability |
CVE-2005-1602
|
| FULLDISC:20050508 Firefox Remote Compromise Leaked |
CVE-2005-1476
CVE-2005-1477
|
| FULLDISC:20050508 Firefox Remote Compromise Technical Details |
CVE-2005-1476
CVE-2005-1477
|
| FULLDISC:20050508 Server Remote File Manager DOS Exploit |
CVE-2005-1603
|
| FULLDISC:20050508 phpbb 2.0.15 released - patches high critical vuln |
CVE-2005-1193
|
| FULLDISC:20050509 SiteStudio |
CVE-2005-1605
|
| FULLDISC:20050510 Useless tidbit |
CVE-2005-2935
|
| FULLDISC:20050510 Useless tidbit (MS AntiSpyware) |
CVE-2005-2935
|
| FULLDISC:20050510 [Full-disclosure] [Scan Associates Advisory] Neteyes Nexusway multiple vulnerability |
CVE-2005-1560
|
| FULLDISC:20050510 [Scan Associates Advisory] Neteyes Nexusway multiple vulnerability |
CVE-2005-1558
CVE-2005-1559
|
| FULLDISC:20050511 [DR018] Quartz Composer / QuickTime 7 information leakage |
CVE-2005-1579
|
| FULLDISC:20050513 PhotoPost Arbitrary Data Exploit |
CVE-2005-1629
|
| FULLDISC:20050515 Gurgens Guest Book Password Database Vulnerability |
CVE-2005-1647
|
| FULLDISC:20050515 Ultimate Forum Password Database Vulnerability |
CVE-2005-1648
|
| FULLDISC:20050516 Advisory: Pico Server (pServ) Remote Command Injection |
CVE-2005-1365
|
| FULLDISC:20050516 Pico Server (pServ) Information Disclosure Of CGI Sources |
CVE-2005-1366
|
| FULLDISC:20050516 Pico Server (pServ) Local Information Disclosure |
CVE-2005-1367
|
| FULLDISC:20050517 MySQL < 4.0.12 && MySQL <= 5.0.4 : Insecure tmp |
CVE-2005-1636
|
| FULLDISC:20050520 ERRATA: [ GLSA 200505-13 ] FreeRADIUS: SQL injection and Denial of Service vulnerability |
CVE-2005-1454
CVE-2005-1455
|
| FULLDISC:20050528 Invision Power Board 1.x and 2.x Privilege Escalation Vulnerability |
CVE-2005-1816
|
| FULLDISC:20050529 XSS Bug in Jaws Glossary Action: ViewTerm ( v 0.4 - 0.5.1 (latest version)) |
CVE-2005-1800
|
| FULLDISC:20050601 HP Radia Notify Daemon: Multiple Buffer Overflow Vulnerabilities |
CVE-2005-1825
CVE-2005-1826
|
| FULLDISC:20050603 [DRUPAL-SA-2005-001] New Drupal release fixes critical security issue |
CVE-2005-1871
|
| FULLDISC:20050604 LSS.hr false positives. |
CVE-2005-1870
|
| FULLDISC:20050605 Re: LSS.hr false positives. (correction) |
CVE-2005-1870
|
| FULLDISC:20050606 Crob FTP Server remote buffer overflows |
CVE-2005-1873
|
| FULLDISC:20050606 GIPTables Firewall <= v1.1 insecure temporary file creation |
CVE-2005-1878
|
| FULLDISC:20050606 Lpanel.NET's Lpanel (all versions up to and including 1.59) is vulnerable in that it allows an attacker to close any support ticket within the system. |
CVE-2005-1932
|
| FULLDISC:20050606 Lpanel.NET's Lpanel (all versions up to and including 1.59) is vulnerable in that it allows an attacker to open any support ticket within the system. |
CVE-2005-1932
|
| FULLDISC:20050606 Lpanel.NET's Lpanel (all versions up to and including 1.59) is vulnerable in that it allows an attacker to reset the DNS information of any domain name managed by the system. |
CVE-2005-1932
|
| FULLDISC:20050606 Lpanel.NET's Lpanel (all versions up to and including 1.59) is vulnerable in that it allows an attacker to respond to any support ticket on the system. |
CVE-2005-1932
|
| FULLDISC:20050606 Lpanel.NET's Lpanel (all versions up to and including 1.59) is vulnerable to plain-text session credential leakage via script injection. |
CVE-2005-1877
|
| FULLDISC:20050606 Lpanel.NET's Lpanel (all versions up to and including 1.59) is vulnerable to the unauthorized viewing of client invoice information. |
CVE-2005-1932
|
| FULLDISC:20050606 Lpanel.NET's Lpanel (all versions up to and including 1.59) is vulnerable to unauthorized domain management access. |
CVE-2005-1932
|
| FULLDISC:20050606 LutelWall <= 0.97 insecure temporary file creation |
CVE-2005-1879
|
| FULLDISC:20050606 Popper webmail remote code execution vulnerability - advisory fix |
CVE-2005-1870
|
| FULLDISC:20050606 everybuddy <= 0.4.3 insecure temporary file creation |
CVE-2005-1880
|
| FULLDISC:20050612 [CIRT.DK - Advisory] Novell eDirectory 8.7.3 DOS Device name Denial of Service |
CVE-2005-1729
|
| FULLDISC:20050615 DMA[2005-0614a] - 'Global Hauri ViRobot Server cookie overflow' |
CVE-2005-2041
|
| FULLDISC:20050616 CoolCafe Chat SQL injection |
CVE-2005-2035
CVE-2005-2036
|
| FULLDISC:20050619 Advisory 01/2005: Fileupload/download vulnerability in Trac |
CVE-2005-2007
|
| FULLDISC:20050628 Solaris 9/10 ld.so fun |
CVE-2005-2072
|
| FULLDISC:20050704 log4sh insecure temporary file creation |
CVE-2005-1915
|
| FULLDISC:20050704 pam_ldap/nss_ldap password leak in a master+slave+start_tls LDAP setup |
CVE-2005-2069
|
| FULLDISC:20050705 Quickblogger |
CVE-2005-4785
|
| FULLDISC:20050710 ID Board 1.1.3 SQL Injection Vulnerability |
CVE-2005-2197
|
| FULLDISC:20050711 [CAID 35330, 35331]: CA Anti-Virus, CA Threat Manager, and CA Anti-Spyware Console Login and File Mapping Vulnerabilities |
CVE-2007-2522
CVE-2007-2523
|
| FULLDISC:20050718 Shorewall MACLIST Problem |
CVE-2005-2317
|
| FULLDISC:20050725 Help poor children in Uganda |
CVE-2005-2368
|
| FULLDISC:20050726 SPIDynamics WebInspect Cross-Application Scripting (XAS) |
CVE-2005-2442
|
| FULLDISC:20050729 Cisco IOS Shellcode Presentation |
CVE-2005-2451
|
| FULLDISC:20050801 Buffer overflow in BusinessMail email server system 4.60.00 |
CVE-2005-2472
|
| FULLDISC:20050808 [AppSecInc Advisory MYSQL05-V0001] Improper Filtering of Directory Traversal Characters in MySQL User Defined Functions |
CVE-2005-2573
|
| FULLDISC:20050808 [AppSecInc Advisory MYSQL05-V0002] Buffer Overflow in MySQL User Defined Functions |
CVE-2005-2558
|
| FULLDISC:20050809 (no subject) |
CVE-2005-2612
|
| FULLDISC:20050810 Evolution multiple remote format string bugs |
CVE-2005-2549
CVE-2005-2550
|
| FULLDISC:20050811 Fudforum: incompletely check of user rights in tree view gaining access to all messages |
CVE-2005-2600
|
| FULLDISC:20050811 Privilege escalation in Network Associates ePolicy Orchestrator Agent 3.5.0 (patch 3) |
CVE-2005-2554
|
| FULLDISC:20050811 Windows 2000 universal exploit for MS05-039 |
CVE-2005-1983
|
| FULLDISC:20050812 Multiple directory traversal vulnerabilities in Claroline |
CVE-2005-2598
|
| FULLDISC:20050814 STG Security Advisory: [SSA-20050812-27] Discuz! arbitrary script upload vulnerability |
CVE-2005-2614
|
| FULLDISC:20050817 Unicode Buffer Overflow in WinFtp Server 1.6.8 |
CVE-2005-2634
|
| FULLDISC:20050818 Re: mutt buffer overflow |
CVE-2005-2642
|
| FULLDISC:20050818 mutt buffer overflow |
CVE-2005-2642
|
| FULLDISC:20050818 w-agora 4.2.0 and prior Remote Directory Travel Vulnerability |
CVE-2005-2648
|
| FULLDISC:20050819 Re: Erroneous Informations - Multiple directory traversal vulnerabilities in Claroline |
CVE-2005-2598
|
| FULLDISC:20050820 [RETRO AUDITING] Elm remote buffer overflow in Expires header |
CVE-2005-2665
|
| FULLDISC:20050823 Server crash in Ventrilo 2.3.0 |
CVE-2005-2719
|
| FULLDISC:20050824 mplayer overflow |
CVE-2005-2718
|
| FULLDISC:20050825 NOVL-2005010098073 GroupWise Password Caching |
CVE-2005-2620
|
| FULLDISC:20050831 Dameware critical hole |
CVE-2005-2842
|
| FULLDISC:20050901 Multiple Phorum XSS and Session Hijacking vulnerabilities |
CVE-2005-2836
|
| FULLDISC:20050902 Re: Multiple Phorum XSS and Session Hijacking vulnerabilities |
CVE-2005-2836
|
| FULLDISC:20050905 thesitewizard.com chfeedback.pl CRLF Injection |
CVE-2005-2854
|
| FULLDISC:20050909 Mozilla Firefox "Host:" Buffer Overflow |
CVE-2005-2871
|
| FULLDISC:20050911 FireFox "Host:" Buffer Overflow is not just exploitable on FireFox |
CVE-2005-2871
|
| FULLDISC:20050913 LDU Version 801 vulnerable |
CVE-2005-4821
|
| FULLDISC:20050914 Oracle Reports: Generic SQL Injection Vulnerability via Lexical References |
CVE-2005-2983
|
| FULLDISC:20050915 SimpleCDR-X - Insecure tempfile handling |
CVE-2005-3012
|
| FULLDISC:20050916 [CIRT.DK - Advisory 37] TAC Vista Webstation 3.0 Directory Traversal bug in webinterface |
CVE-2005-3040
|
| FULLDISC:20050916 ncompress insecure temporary file creation |
CVE-2005-2991
|
| FULLDISC:20050918 Alstrasoft Epay Pro 2.0 and prior Directory Traversal Vulnerability |
CVE-2005-3026
|
| FULLDISC:20050920 Re: arc insecure temporary file creation |
CVE-2005-2992
|
| FULLDISC:20050920 bacula insecure temporary file creation |
CVE-2005-2995
|
| FULLDISC:20050920 perldiver |
CVE-2005-3066
CVE-2005-3067
|
| FULLDISC:20050923 SecureW2 TLS security problem |
CVE-2005-3087
|
| FULLDISC:20050924 It's time for some warez - Qpopper poppassd local r00t exploit |
CVE-2005-3098
|
| FULLDISC:20050924 It's time for some warez - wzdftpd remote exploit |
CVE-2005-3081
|
| FULLDISC:20050925 ContentServ features remote file disclosure |
CVE-2005-3086
|
| FULLDISC:20050925 Server crash and motd deletion in MultiTheftAuto 0.5 patch 1 |
CVE-2005-3064
CVE-2005-3065
|
| FULLDISC:20050926 RealPlayer && HelixPlayer Remote Format String |
CVE-2005-2710
|
| FULLDISC:20050927 Re: [ISR] - Novell GroupWise Client Integer Overflow |
CVE-2005-2804
|
| FULLDISC:20050927 [ISR] - Novell GroupWise Client Integer Overflow |
CVE-2005-2804
|
| FULLDISC:20050929 Serendipity: Account Hijacking / CSRF Vulnerability |
CVE-2005-3129
|
| FULLDISC:20050929 [NRVA05-08] - Arbitrary file download by NateOn Messagener's ActiveX and DoS |
CVE-2005-3113
CVE-2005-3114
|
| FULLDISC:20051003 Kaspersky Antivirus Library Remote Heap Overflow |
CVE-2005-3142
|
| FULLDISC:20051004 iDEFENSE Security Advisory 10.04.05: UW-IMAP Netmailbox Name Parsing Buffer Overflow Vulnerability |
CVE-2005-2933
|
| FULLDISC:20051005 Tellme 1.2 |
CVE-2005-4698
CVE-2005-4699
CVE-2005-4700
|
| FULLDISC:20051006 OScommerce: "Additional Images" Module SQL Injection |
CVE-2005-4677
|
| FULLDISC:20051006 Secunia Research: Webroot Desktop Firewall Two Vulnerabilities |
CVE-2005-3197
CVE-2005-3198
|
| FULLDISC:20051007 Cross-Site-Scripting Vulnerabilities in Oracle HTMLDB |
CVE-2005-3202
|
| FULLDISC:20051007 Cross-Site-Scripting Vulnerability in Oracle XMLDB |
CVE-2005-3204
|
| FULLDISC:20051007 Cross-Site-Scripting Vulnerability in Oracle iSQL*Plus |
CVE-2005-3205
|
| FULLDISC:20051007 Plaintext Password Vulnerabilitiy during Installation of Oracle HTMLDB |
CVE-2005-3203
|
| FULLDISC:20051007 Shutdown TNS Listener via Oracle Forms Servlet |
CVE-2005-3207
|
| FULLDISC:20051007 Shutdown TNS Listener via Oracle iSQL*Plus |
CVE-2005-3206
|
| FULLDISC:20051008 xine/gxine CD Player Remote Format String Bug |
CVE-2005-2967
|
| FULLDISC:20051011 Secunia Research: WinRAR Format String and Buffer Overflow Vulnerabilities |
CVE-2005-3263
|
| FULLDISC:20051012 Secunia Research: Novell NetMail NMAP Agent "USER" Buffer Overflow Vulnerability |
CVE-2005-2469
|
| FULLDISC:20051012 ZDI-05-001: VERITAS NetBackup Remote CodeExecution |
CVE-2005-2715
|
| FULLDISC:20051012 [SEC-1 Advisory] Collaboration Data Objects Buffer Overflow Vulnerability |
CVE-2005-1987
|
| FULLDISC:20051012 [SEC-1 Advisory] GFI MailSecurity 8.1 Web Module Buffer Overflow |
CVE-2005-3182
|
| FULLDISC:20051013 Kerio Personal Firewall and Kerio Server Firewall FWDRV driver Local Denial of Service |
CVE-2005-3286
|
| FULLDISC:20051014 CAID 33485 - Computer Associates iGateway debug mode HTTP GET request buffer overflow vulnerability |
CVE-2005-3190
|
| FULLDISC:20051017 Lynx Remote Buffer Overflow |
CVE-2005-3120
|
| FULLDISC:20051019 RE: CAID 33485 - Computer Associates iGateway debug mode HTTP GET request buffer overflow vulnerability |
CVE-2005-3190
|
| FULLDISC:20051020 Exploit Oracle DB27 - CPU Octobre |
CVE-2005-3438
|
| FULLDISC:20051021 F.E.A.R. 1.01 likes lithsock |
CVE-2004-1395
|
| FULLDISC:20051022 Advisory 16/2005: phpMyAdmin Local File Inclusion Vulnerability |
CVE-2005-3300
|
| FULLDISC:20051022 Vulnerability in AL-Caricatier, V.2.5 And Prior Versions |
CVE-2005-4653
|
| FULLDISC:20051022 phpBB 2.0.17 (and other BB systems as well) Cookie disclosure exploit. |
CVE-2005-3310
|
| FULLDISC:20051024 Fwd: Vulnerability in Ar-blog ver 5.2 and prior versions |
CVE-2005-3494
CVE-2005-3495
|
| FULLDISC:20051024 php < 4.4.1 htaccess apache dos |
CVE-2005-3319
|
| FULLDISC:20051025 PHP iCalendar CSS |
CVE-2005-3366
|
| FULLDISC:20051025 Re: [Full-disclosure] SEC-Consult SA 20051025-1 :: RSA ACE Web Agent |
CVE-2005-3329
|
| FULLDISC:20051025 Re: [Full-disclosure] phpBB 2.0.17 (and other BB systems as well) Cookie disclosure exploit. |
CVE-2005-3477
|
| FULLDISC:20051025 SEC-Consult SA 20051025-1 :: RSA ACE Web Agent XSS |
CVE-2005-3329
|
| FULLDISC:20051025 Snort's BO pre-processor exploit |
CVE-2005-3252
|
| FULLDISC:20051026 chmlib exploitable buffer overflow |
CVE-2005-3318
|
| FULLDISC:20051027 Hasbani-WindWeb/2.0 Remote DoS [ with exploit ] |
CVE-2005-3475
|
| FULLDISC:20051028 Multiple vulnerabilities within RockLiffe MailSite Express WebMail |
CVE-2005-3428
CVE-2005-3429
CVE-2005-3430
CVE-2005-3431
|
| FULLDISC:20051101 HYSA-2005-009 Elite Forum 1.0.0.0 XSS |
CVE-2005-3412
|
| FULLDISC:20051101 Snort Back Orifice Preprocessor Exploit (Win32 targets) |
CVE-2005-3252
|
| FULLDISC:20051101 new IE bug (confirmed on ALL windows) |
CVE-2005-4717
|
| FULLDISC:20051102 Buffer-overflow and crash in FlatFrag 0.3 |
CVE-2005-3491
CVE-2005-3492
|
| FULLDISC:20051102 Buffer-overflow and directory traversal in Asus |
CVE-2005-3489
CVE-2005-3490
|
| FULLDISC:20051102 Buffer-overflow in GO-Global for Windows |
CVE-2005-3483
|
| FULLDISC:20051102 Buffer-overflow in Glider collect'n kill 1.0.0.0 |
CVE-2005-3485
|
| FULLDISC:20051102 H4CREW-000002 Sambars 6.3 BETA 2 Proxy.asp XSS |
CVE-2005-3506
|
| FULLDISC:20051102 Limited directory traversal in NeroNET 1.2.0.2 |
CVE-2005-3484
|
| FULLDISC:20051102 Multiple vulnerabilities in Scorched 3D 39.1 |
CVE-2005-3486
CVE-2005-3487
CVE-2005-3488
|
| FULLDISC:20051102 Socket termination in Battle Carry .005 |
CVE-2005-3493
|
| FULLDISC:20051102 [ TZO-012005 ] F-Prot/Frisk Anti Virus bypass - ZIP Version Header |
CVE-2005-3499
|
| FULLDISC:20051103 Advisory: Apple QuickTime Player Remote Denial Of Service |
CVE-2005-2755
|
| FULLDISC:20051103 Buggy blogging |
CVE-2005-3101
CVE-2005-3102
CVE-2005-3103
CVE-2005-3104
CVE-2005-4689
CVE-2005-4690
|
| FULLDISC:20051104 Browser cookie handling: possible cross-domain cookie sharing |
CVE-2005-4684
CVE-2005-4685
|
| FULLDISC:20051104 Cerberus helpdesk |
CVE-2005-3502
|
| FULLDISC:20051104 DMA[2005-1104a] - 'GpsDrive friendsd2 format string vulnerability' |
|