ctrl c software vulnerabilities
vulnerabilities.aspcode.net
Searching ctrl c software vulnerabilities
Ascom Timeplex router allows remote attackers t
unauthorized
|
information
|
activities
|
characters
|
attackers
|
sensitive
|
sequence
|
Timeplex
|
entering
|
through
|
conduct
|
router
|
allows
|
CTRL-D
|
obtain
|
remote
|
debug
|
Ascom
|
mode
|
Ascom Timeplex router allows remote attackers to obtain sensitive information or conduct unauthorized activities by entering debug mode through a sequence of CTRL-D characters.
Xyplex terminal server 6.0.1S1, and possibly ot
attackers
|
versions
|
entering
|
password
|
possibly
|
terminal
|
bypass
|
Xyplex
|
prompt
|
server
|
allows
|
remote
|
other
|
601S1
|
Xyplex terminal server 6.0.1S1, and possibly other versions, allows remote attackers to bypass the password prompt by entering (1) a CTRL-Z character, or (2) a ? (question mark).
Micah Software Full Armor Network Configurator
Administration
|
Configurator
|
protection
|
Software
|
physical
|
desktop
|
Network
|
access
|
bypass
|
users
|
Micah
|
Armor
|
local
|
allow
|
Full
|
Zero
|
Micah Software Full Armor Network Configurator and Zero Administration allow local users with physical access to bypass the desktop protection by (1) using
and kill the process using the task manager, (2) booting the system from a separate disk, or (3) interrupting certain processes that execute while the system is booting.
Xylan OmniSwitch before 3.2.6 allows remote att
OmniSwitch
|
before
|
Xylan
|
Xylan OmniSwitch before 3.2.6 allows remote attackers to bypass the login prompt via a CTRL-D (control d) character, which locks other users out of the switch because it only supports one session at a time.
SGI MIPSPro compilers C, C++, F77 and F90 gener
predictable
|
temporary
|
malicious
|
compilers
|
generate
|
contents
|
compiled
|
MIPSPro
|
another
|
insert
|
local
|
allow
|
users
|
these
|
being
|
names
|
files
|
could
|
which
|
they
|
user
|
into
|
/tmp
|
file
|
SGI
|
C++
|
F90
|
F77
|
SGI MIPSPro compilers C, C++, F77 and F90 generate temporary files in /tmp with predictable file names, which could allow local users to insert malicious contents into these files as they are being compiled by another user.
Identix BioLogon 3 allows users with physical a
administrative
|
CTRL-ALT-DEL
|
privileges
|
BioLogon
|
function
|
"Browse"
|
Explorer
|
physical
|
running
|
Identix
|
system
|
access
|
allows
|
which
|
users
|
using
|
runs
|
gain
|
Identix BioLogon 3 allows users with physical access to the system to gain administrative privileges by using CTRL-ALT-DEL and running a "Browse" function, which runs Explorer with SYSTEM privileges.
The Remote Desktop Sharing (RDS) Screen Saver P
Sharing
|
Desktop
|
Remote
|
The Remote Desktop Sharing (RDS) Screen Saver Protection capability for Microsoft NetMeeting 3.01 through SP2 (4.4.3396) allows attackers with physical access to hijack remote sessions by entering certain logoff or shutdown sequences (such as CTRL-ALT-DEL) and canceling out of the resulting user confirmation prompts, such as when the remote user is editing a document.
Buffer overflow in Automatic File Distributor (
Distributor
|
Automatic
|
overflow
|
Buffer
|
File
|
Buffer overflow in Automatic File Distributor (AFD) 1.2.14 and earlier allows local users to gain privileges via a long MON_WORK_DIR environment variable or -w (workdir) argument to (1) afd, (2) afdcmd, (3) afd_ctrl, (4) init_afd, (5) mafd, (6) mon_ctrl, (7) show_olog, or (8) udc.
Apple Mac OS X 10.0 through 10.2.8 allows local
Apple
|
Mac
|
Apple Mac OS X 10.0 through 10.2.8 allows local users with a USB keyboard to gain unauthorized access by holding down the CTRL and C keys when the system is booting, which crashes the init process and leaves the user in a root shell.
Unknown versions of Mozilla allow remote attack
attackers
|
versions
|
service
|
Unknown
|
Mozilla
|
denial
|
remote
|
allow
|
cause
|
Unknown versions of Mozilla allow remote attackers to cause a denial of service (high CPU/RAM consumption) using Javascript with an infinite loop that continues to add input to a form, possibly as the result of inserting control characters, as demonstrated using an embedded ctrl-U.
Mozilla Firefox before the Preview Release, Moz
Release
|
Preview
|
Mozilla
|
Firefox
|
before
|
Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allows untrusted Javascript code to read and write to the clipboard, and possibly obtain sensitive information, via script-generated events such as Ctrl-Ins.
eSeSIX Thintune thin clients running firmware 2
firmware
|
Thintune
|
running
|
clients
|
eSeSIX
|
thin
|
eSeSIX Thintune thin clients running firmware 2.4.38 and earlier allow local users to gain privileges by pressing CTRL-SHIFT-ALT-DEL and entering the "maertsJ" password, which is hard-coded into lshell.
Acrowave AAP-3100AR wireless router allows remo
authentication
|
AAP-3100AR
|
attackers
|
pressing
|
password
|
username
|
Acrowave
|
wireless
|
restart
|
session
|
bypass
|
telnet
|
remote
|
causes
|
CTRL-C
|
router
|
prompt
|
allows
|
leave
|
crash
|
which
|
shell
|
user
|
then
|
new
|
Acrowave AAP-3100AR wireless router allows remote attackers to bypass authentication by pressing CTRL-C at the username or password prompt in a telnet session, which causes the shell to crash and restart, then leave the user in the new shell.
** DISPUTED ** Sudo 1.6.8p7 on SuSE Linux 9.3,
distributions
|
privileges
|
possibly
|
entering
|
password
|
DISPUTED
|
hitting
|
allows
|
CTRL-C
|
blank
|
using
|
168p7
|
other
|
Linux
|
users
|
local
|
Sudo
|
SuSE
|
gain
|
call
|
then
|
** DISPUTED ** Sudo 1.6.8p7 on SuSE Linux 9.3, and possibly other Linux distributions, allows local users to gain privileges by using sudo to call su, then entering a blank password and hitting CTRL-C. NOTE: SuSE and multiple third-party researchers have not been able to replicate this issue, stating "Sudo catches SIGINT and returns an empty string for the password so I don't see how this could happen unless the user's actual password was empty."
The ifx_load_internal function in IBM Informix
ifx_load_internal
|
Informix
|
function
|
Dynamic
|
Server
|
IBM
|
The ifx_load_internal function in IBM Informix Dynamic Server (IDS) allows remote authenticated users to execute arbitrary C code via the DllMain or _init function in a library, aka "C code UDR."
The RSA Crypto-C before 6.3.1 and Cert-C before
Crypto-C
|
before
|
RSA
|
The RSA Crypto-C before 6.3.1 and Cert-C before 2.8 libraries, as used by RSA BSAFE, multiple Cisco products, and other products, allows remote attackers to cause a denial of service via malformed ASN.1 objects.
Simpliciti Locked Browser does not properly lim
CTRL-SHIFT-ESC
|
unauthorized
|
environment
|
Simpliciti
|
windowblur
|
JavaScript
|
Internet
|
intended
|
Explorer
|
executes
|
visiting
|
properly
|
pressing
|
perform
|
Manager
|
Browser
|
actions
|
invoke
|
remove
|
user's
|
within
|
window
|
Locked
|
allows
|
focus
|
local
|
which
|
limit
|
users
|
site
|
Task
|
does
|
ones
|
loop
|
then
|
web
|
not
|
Simpliciti Locked Browser does not properly limit a user's actions to ones within the intended Internet Explorer environment, which allows local users to perform unauthorized actions by visiting a web site that executes a JavaScript window.blur loop to remove focus from the browser window, then pressing CTRL-SHIFT-ESC to invoke the Task Manager.
PHP remote file inclusion vulnerability in affi
affichage/commentairesphp
|
vulnerability
|
inclusion
|
C-Newsfr
|
C-News
|
remote
|
file
|
PHP
|
PHP remote file inclusion vulnerability in affichage/commentaires.php in C-News.fr C-News 1.0.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the path parameter.
Directory traversal vulnerability in the AVM IG
vulnerability
|
Directory
|
traversal
|
FritzDSL
|
Service
|
CTRL
|
AVM
|
IGD
|
Directory traversal vulnerability in the AVM IGD CTRL Service in Fritz!DSL 02.02.29 allows remote attackers to read arbitrary files via ..%5C (URL-encoded dot dot backslash) sequences in a URI requested from the AR7 webserver.
** DISPUTED ** GNU screen 4.0.3 allows local u
DISPUTED
|
screen
|
GNU
|
** DISPUTED ** GNU screen 4.0.3 allows local users to unlock the screen via a CTRL-C sequence at the password prompt. NOTE: multiple third parties report inability to reproduce this issue.
Software vulnerabilities results 1 to 20 of 469
Page:
1
2
3
4
5
...
24
►