null software vulnerabilities
vulnerabilities.aspcode.net
Searching null software vulnerabilities
A Unix account has a default, null, blank, or m
password
|
default
|
missing
|
account
|
blank
|
Unix
|
null
|
has
|
A Unix account has a default, null, blank, or missing password.
A Windows NT local user or administrator accoun
administrator
|
password
|
missing
|
default
|
account
|
Windows
|
blank
|
local
|
user
|
null
|
has
|
A Windows NT local user or administrator account has a default, null, blank, or missing password.
A Windows NT domain user or administrator accou
administrator
|
password
|
missing
|
default
|
account
|
Windows
|
domain
|
blank
|
user
|
null
|
has
|
A Windows NT domain user or administrator account has a default, null, blank, or missing password.
An account on a router, firewall, or other netw
firewall
|
password
|
network
|
default
|
account
|
missing
|
device
|
router
|
blank
|
other
|
null
|
has
|
An account on a router, firewall, or other network device has a default, null, blank, or missing password.
An SNMP community name is the default (e.g. pub
community
|
default
|
name
|
SNMP
|
An SNMP community name is the default (e.g. public), null, or missing.
dcshop.cgi in DCShop 1.002 Beta allows remote a
dcshopcgi
|
DCShop
|
dcshop.cgi in DCShop 1.002 Beta allows remote attackers to delete arbitrary setup files via a null character in the database parameter.
The Java Server Pages (JSP) engine in Tomcat al
Server
|
Pages
|
Java
|
The Java Server Pages (JSP) engine in Tomcat allows web page owners to cause a denial of service (engine crash) on the web server via a JSP page that calls WPrinterJob().pageSetup(null,null).
The Java Server Pages (JSP) engine in JRun allo
Server
|
Pages
|
Java
|
The Java Server Pages (JSP) engine in JRun allows web page owners to cause a denial of service (engine crash) on the web server via a JSP page that calls WPrinterJob().pageSetup(null,null).
Solaris 2.5.1 through 9 allows local users to c
Solaris
|
Solaris 2.5.1 through 9 allows local users to cause a denial of service (kernel panic) by setting the sd_struiowrq variable in the struioget function to null, which triggers a null dereference.
Sun Java 1.3.1, 1.4.1, and 1.4.2 allows local u
Java
|
Sun
|
Sun Java 1.3.1, 1.4.1, and 1.4.2 allows local users to cause a denial of service (JVM crash), possibly by calling the ClassDepth function with a null parameter, which causes a crash instead of generating a null pointer exception.
Midnight commander (mc) 4.5.55 and earlier allo
commander
|
Midnight
|
Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service by triggering a null dereference.
Mozilla allows remote attackers to cause a deni
attackers
|
Mozilla
|
service
|
denial
|
allows
|
remote
|
cause
|
Mozilla allows remote attackers to cause a denial of service (application crash from null dereference or infinite loop) via a web page that contains a (1) TEXTAREA, (2) INPUT, (3) FRAMESET or (4) IMG tag followed by a null character and some trailing characters, as demonstrated by mangleme.
profile.php in PunBB 1.2.1 allows remote attack
profilephp
|
PunBB
|
profile.php in PunBB 1.2.1 allows remote attackers to cause a denial of service (account lockout) by setting the user's password to NULL.
Carsten's 3D Engine (Ca3DE), March 2004 version
Carsten's
|
Engine
|
Carsten's 3D Engine (Ca3DE), March 2004 version and earlier, allows remote attackers to execute arbitrary code via text strings that are not null terminated, which triggers a null dereference.
XAMPP 1.4.x has multiple default or null passwo
privileges
|
attackers
|
passwords
|
multiple
|
default
|
allows
|
which
|
XAMPP
|
gain
|
null
|
14x
|
has
|
XAMPP 1.4.x has multiple default or null passwords, which allows attackers to gain privileges.
oftpd 0.3.7 allows remote attackers to cause a
oftpd
|
oftpd 0.3.7 allows remote attackers to cause a denial of service via a USER command with a large number of null (\0) characters.
libungif library before 4.1.0 allows attackers
libungif
|
library
|
before
|
libungif library before 4.1.0 allows attackers to cause a denial of service via a crafted GIF file that triggers a null dereference.
MySQL 5.0.18 and earlier allows local users to
MySQL
|
MySQL 5.0.18 and earlier allows local users to bypass logging mechanisms via SQL queries that contain the NULL character, which are not properly handled by the mysql_real_query function. NOTE: this issue was originally reported for the mysql_query function, but the vendor states that since mysql_query expects a null character, this is not an issue for mysql_query.
NCH Swift Sound Web Dictate 1.02 allows remote
Dictate
|
Sound
|
Swift
|
NCH
|
Web
|
NCH Swift Sound Web Dictate 1.02 allows remote attackers to bypass authentication via a null password.
index.php in SoftBB 0.1, and possibly earlier,
installation
|
parameter
|
attackers
|
indexphp
|
possibly
|
invalid
|
earlier
|
page[]
|
allows
|
remote
|
obtain
|
SoftBB
|
path
|
null
|
via
|
index.php in SoftBB 0.1, and possibly earlier, allows remote attackers to obtain the installation path via a null or invalid page[] parameter.
Software vulnerabilities results 1 to 20 of 423
Page:
1
2
3
4
5
...
22
►