Export limit exceeded: 29988 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Search
Search Results (29988 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-1999-0878 | 2 Beroftpd, Washington University | 2 Beroftpd, Wu-ftpd | 2026-04-16 | N/A |
| Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via MAPPING_CHDIR. | ||||
| CVE-1999-0879 | 2 Bsdi, Caldera | 2 Bsd Os, Openlinux | 2026-04-16 | N/A |
| Buffer overflow in WU-FTPD and related FTP servers allows remote attackers to gain root privileges via macro variables in a message file. | ||||
| CVE-1999-0881 | 1 Blueface | 1 Falcon Web Server | 2026-04-16 | N/A |
| Falcon web server allows remote attackers to read arbitrary files via a .. (dot dot) attack. | ||||
| CVE-1999-0882 | 1 Falcon | 1 Falcon Web Server | 2026-04-16 | N/A |
| Falcon web server allows remote attackers to determine the absolute path of the web root via long file names. | ||||
| CVE-1999-0883 | 1 Zeus Technologies | 1 Zeus Web Server | 2026-04-16 | N/A |
| Zeus web server allows remote attackers to read arbitrary files by specifying the file name in an option to the search engine. | ||||
| CVE-1999-0884 | 1 Zeus Technologies | 1 Zeus Web Server | 2026-04-16 | N/A |
| The Zeus web server administrative interface uses weak encryption for its passwords. | ||||
| CVE-1999-0885 | 1 Computer Software Manufaktur | 1 Alibaba | 2026-04-16 | N/A |
| Alibaba web server allows remote attackers to execute commands via a pipe character in a malformed URL. | ||||
| CVE-2006-4269 | 2 Joomla, Mambo | 2 X-shop Component, X-shop Component | 2026-04-16 | N/A |
| PHP remote file inclusion vulnerability in admin.x-shop.php in the x-shop component (com_x-shop) 1.7 and earlier for Mambo and Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. NOTE: this issue has been disputed by third party researchers, stating that there is no mosConfig_absolute_path parameter and no admin.x-shop.php file in the reported package | ||||
| CVE-1999-0901 | 1 Linux-nis | 1 Ypserv | 2026-04-16 | N/A |
| ypserv allows a local user to modify the GECOS and login shells of other users. | ||||
| CVE-1999-0902 | 1 Linux-nis | 1 Ypserv | 2026-04-16 | N/A |
| ypserv allows local administrators to modify password tables. | ||||
| CVE-1999-0903 | 1 Ibm | 1 Aix | 2026-04-16 | N/A |
| genfilt in the AIX Packet Filtering Module does not properly filter traffic to destination ports greater than 32767. | ||||
| CVE-1999-0904 | 1 Byte Fusion | 1 Bftelnet | 2026-04-16 | N/A |
| Buffer overflow in BFTelnet allows remote attackers to cause a denial of service via a long username. | ||||
| CVE-2005-3350 | 2 Libungif, Redhat | 2 Libungif, Enterprise Linux | 2026-04-16 | N/A |
| libungif library before 4.1.0 allows attackers to corrupt memory and possibly execute arbitrary code via a crafted GIF file that leads to an out-of-bounds write. | ||||
| CVE-2005-3351 | 2 Apache, Redhat | 2 Spamassassin, Enterprise Linux | 2026-04-16 | N/A |
| SpamAssassin 3.0.4 allows attackers to bypass spam detection via an e-mail with a large number of recipients ("To" addresses), which triggers a bus error in Perl. | ||||
| CVE-2006-4273 | 1 Jelsoft | 1 Vbulletin | 2026-04-16 | N/A |
| Cross-site scripting (XSS) vulnerability in Jelsoft vBulletin 3.5.4 and 3.6.0 allows remote attackers to inject arbitrary web script or HTML by uploading an attachment with a .pdf extension that contains JavaScript, which is processed as script by Microsoft Internet Explorer 6. | ||||
| CVE-2006-4275 | 1 Mambo | 1 Catalogshop Component | 2026-04-16 | N/A |
| PHP remote file inclusion vulnerability in catalogshop.php in the CatalogShop component for Mambo (com_catalogshop) allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. | ||||
| CVE-1999-0934 | 2026-04-16 | N/A | ||
| classifieds.cgi allows remote attackers to read arbitrary files via shell metacharacters. | ||||
| CVE-2006-4279 | 1 Xennobb | 1 Xennobb | 2026-04-16 | N/A |
| SQL injection vulnerability in topic_post.php in XennoBB 2.2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the icon_topic parameter. | ||||
| CVE-1999-0930 | 1 Matt Wright | 1 Wwwboard | 2026-04-16 | N/A |
| wwwboard allows a remote attacker to delete message board articles via a malformed argument. | ||||
| CVE-2006-4280 | 1 Mambo | 1 Anjel Component | 2026-04-16 | N/A |
| PHP remote file inclusion vulnerability in anjel.index.php in ANJEL (formerly MaMML) Component (com_anjel) for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. NOTE: this issue has been disputed by a third party, who says that $mosConfig_absolute_path is set in a configuration file | ||||