| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| finger 0@host on some systems may print information on some user accounts. |
| finger .@host on some systems may print information on some user accounts. |
| Sendmail 8.6.9 allows remote attackers to execute root commands, using ident. |
| The GNU tar command, when used in FTP sessions, may allow an attacker to execute arbitrary commands. |
| In Sendmail, attackers can gain root privileges via SMTP by specifying an improper "mail from" address and an invalid "rcpt to" address that would cause the mail to bounce to a program. |
| Remote attacker can execute commands through Majordomo using the Reply-To field and a "lists" command. |
| Solaris rpc.mountd generates error messages that allow a remote attacker to determine what files are on the server. |
| Multiple cross-site scripting (XSS) vulnerabilities in versatileBulletinBoard (vBB) 1.0.0 RC2 allow remote attackers to inject arbitrary web script or HTML via (1) the url parameter in dereferrer.php and (2) the file parameter in imagewin.php. |
| Automount daemon automountd allows local or remote users to gain privileges via shell metacharacters. |
| Extra long export lists over 256 characters in some mount daemons allows NFS directories to be mounted by anyone. |
| libnsl in Solaris allowed an attacker to perform a denial of service of rpcbind. |
| Denial of service by sending forged ICMP unreachable packets. |
| Malicious option settings in UDP packets could force a reboot in SunOS 4.1.3 systems. |
| getversions.php in versatileBulletinBoard (vBB) 1.0.0 RC2 lists the versions of all installed scripts, which allows remote attackers to obtain sensitive information via a direct request. |
| Denial of service in Cisco IOS web server allows attackers to reboot the router using a long URL. |
| Livingston portmaster machines could be rebooted via a series of commands. |
| Solaris syslogd crashes when receiving a message from a host that doesn't have an inverse DNS entry. |
| Denial of service in Windows NT messenger service through a long username. |
| Denial of service in Windows NT IIS server using ..\.. |
| Buffer overflow in Cisco 7xx routers through the telnet service. |