Searching certain software vulnerabilities


Vulnerability in KDE konsole allows local users


Vulnerability in KDE konsole allows local users to hijack or observe sessions of other users by accessing certain devices.


Vulnerability in Desktop searchbook program in


Vulnerability in Desktop searchbook program in IRIX 5.0.x through 6.2 sets insecure permissions for certain user files (iconbook and searchbook).


xterm, Eterm, and rxvt allow an attacker to cau


xterm, Eterm, and rxvt allow an attacker to cause a denial of service by embedding certain escape characters which force the window to be resized.


upgrade.php3 in Phorum 3.0.7 could allow remote


upgrade.php3 in Phorum 3.0.7 could allow remote attackers to modify certain Phorum database tables via an unknown method.


Unknown vulnerability in ndd for HP-UX 11.11 wi


Unknown vulnerability in ndd for HP-UX 11.11 with certain TRANSPORT patches allows attackers to cause a denial of service.


runlpr in the LPRng package allows the local lp


runlpr in the LPRng package allows the local lp user to gain root privileges via certain command line arguments.


Dispair 0.1 and 0.2 allows remote attackers to


Dispair 0.1 and 0.2 allows remote attackers to execute arbitrary shell commands via certain form fields.


Buffer overflow in Windows Kernel allows local


Buffer overflow in Windows Kernel allows local users to gain privileges by causing certain error messages to be passed to a debugger.


Certain versions of Internet Explorer 5 and 6,


Certain versions of Internet Explorer 5 and 6, in certain Windows environments, allow remote attackers to cause a denial of service (freeze) via a URL to C:\aux (MS-DOS device name) and possibly other devices.


IBM DB2 Universal Database 7 before FixPak 12 c


IBM DB2 Universal Database 7 before FixPak 12 creates certain DMS directories with insecure permissions (777), which allows local users to modify or delete certain DB2 files.


cryptoloop on Linux kernel 2.6.x, when used on


cryptoloop on Linux kernel 2.6.x, when used on certain file systems with a block size 1024 or greater, has certain "IV computation" weaknesses that allow watermarked files to be detected without decryption.


dm-crypt on Linux kernel 2.6.x, when used on ce


dm-crypt on Linux kernel 2.6.x, when used on certain file systems with a block size 1024 or greater, has certain "IV computation" weaknesses that allow watermarked files to be detected without decryption.


Unknown vulnerability in Squiggle for Batik bef


Unknown vulnerability in Squiggle for Batik before 1.5.1 allows attackers to bypass certain access controls via certain features of the Rhino scripting engine due to a "script security issue."


Vipul Razor Agents (razor-agents) before 2.70 a


Vipul Razor Agents (razor-agents) before 2.70 allows remote attackers to cause a denial of service via (1) certain "unusual HTML messages" or (2) "certain malformed headers" such as Content-Type.


The kernel driver in Prevx Pro 2005 1.0 does no


The kernel driver in Prevx Pro 2005 1.0 does not verify the source of certain messages, which allows local users to bypass protection by sending certain messages to the driver, as demonstrated by sending an "allow" message to bypass a warning message.


The frag3 preprocessor in Sourcefire Snort 2.4.


The frag3 preprocessor in Sourcefire Snort 2.4.3 does not properly reassemble certain fragmented packets with IP options, which allows remote attackers to evade detection of certain attacks, possibly related to IP option lengths.


choose_new_parent in Linux kernel before 2.6.11


choose_new_parent in Linux kernel before 2.6.11.12 includes certain debugging code, which allows local users to cause a denial of service (panic) by causing certain circumstances involving termination of a parent process.


A certain ActiveX control in rpau3260.dll in Re


A certain ActiveX control in rpau3260.dll in RealNetworks RealPlayer 10.5 allows remote attackers to cause a denial of service (Internet Explorer crash) by invoking the RealPlayer.Initialize method with certain arguments.


GlowWorm FW before 1.5.3b4 allows remote attack


GlowWorm FW before 1.5.3b4 allows remote attackers to cause a denial of service (kernel panic) via certain DNS responses that trigger infinite recursion in TrueDNS packet parsing, as originally observed with certain login.yahoo.com responses.


NuFW 2.2.3, and certain other versions after 2.

NuFW |

NuFW 2.2.3, and certain other versions after 2.0, allows remote attackers to bypass time-based packet filtering rules via certain "out of period" choices of packet transmission time.


Software vulnerabilities results 1 to 20 of 1519     
Page: 12345...76