Searching packet mr promisc software vulnerabilities


An attacker can identify a CISCO device by send


An attacker can identify a CISCO device by sending a SYN packet to port 1999, which is for the Cisco Discovery Protocol (CDP).


A system is operating in "promiscuous" mode whi


A system is operating in "promiscuous" mode which allows it to perform packet sniffing.


A network intrusion detection system (IDS) does


A network intrusion detection system (IDS) does not verify the checksum on a packet.


ip_print procedure in Tcpdump 3.4a allows remot


ip_print procedure in Tcpdump 3.4a allows remote attackers to cause a denial of service via a packet with a zero length header, which causes an infinite loop and core dump when tcpdump prints the packet.


Ethereal allows local users to overwrite arbitr


Ethereal allows local users to overwrite arbitrary files via a symlink attack on the packet capture file.


eEye Iris 1.01 beta allows remote attackers to

Iris | eEye |

eEye Iris 1.01 beta allows remote attackers to cause a denial of service via a malformed packet, which causes Iris to crash when a user views the packet.


Reliant Unix 5.44 and earlier allows remote att


Reliant Unix 5.44 and earlier allows remote attackers to cause a denial of service via an ICMP port unreachable packet, which causes Reliant to drop all connections to the source address of the packet.


Fwmon before 1.0.10 allows remote attackers to


Fwmon before 1.0.10 allows remote attackers to cause a denial of service (crash) by causing the kernel to return a large packet.


Cisco 6000, 6500, and 7600 series systems with


Cisco 6000, 6500, and 7600 series systems with Multilayer Switch Feature Card 2 (MSFC2) and a FlexWAN or OSM module allow local users to cause a denial of service (hang or reset) by sending a layer 2 frame packet that encapsulates a layer 3 packet, but has inconsistent length values with that packet.


The dissect_attribute_value_pairs function in p


The dissect_attribute_value_pairs function in packet-radius.c for Ethereal 0.8.13 to 0.10.2 allows remote attackers to cause a denial of service (crash) via a malformed RADIUS packet that triggers a null dereference.


Etherlords I 1.07 and earlier and Etherlords II


Etherlords I 1.07 and earlier and Etherlords II 1.03 and earlier allows remote attackers to cause a denial of service (crash) by sending a packet that specifies the size for the next packet, then sending a larger packet than specified, which causes Etherlords to read unallocated memory.


Ventrilo 2.1.2 through 2.3.0 allows remote atta


Ventrilo 2.1.2 through 2.3.0 allows remote attackers to cause a denial of service (application crash) via a status packet that contains less data than specified in the packet header sent to UDP port 3784.


Buffer overflow vulnerability in the unicode_to


Buffer overflow vulnerability in the unicode_to_bytes in the Service Location Protocol (srvloc) dissector (packet-srvloc.c) in Ethereal allows remote attackers to execute arbitrary code via a srvloc packet with a modified length value.


Cross-site scripting (XSS) vulnerability in sea


Cross-site scripting (XSS) vulnerability in search.cgi in MR CGI Guy Hot Links SQL 3.1.x and Hot Links Pro 3.1.x allows remote attackers to inject arbitrary web script or HTML via the query string.


Ingate Firewall before 4.3.4 and SIParator befo


Ingate Firewall before 4.3.4 and SIParator before 4.3.4 allows remote attackers to cause a denial of service (kernel deadlock) by sending a SYN packet for a TCP stream, which requires an RST packet in response.


Vavoom 1.19.1 and earlier allows remote attacke


Vavoom 1.19.1 and earlier allows remote attackers to cause a denial of service (infinite loop) via (1) a packet with no data or (2) a large packet, which prevents Vavoom from discarding the packet from the socket.


SnapGear 560, 585, 580, 640, 710, and 720 appli


SnapGear 560, 585, 580, 640, 710, and 720 appliances before the 3.1.4u5 firmware allow remote attackers to cause a denial of service (complete packet loss) via a packet flood, a different vulnerability than CVE-2006-4613.


Image Space rFactor 1.250 and earlier allows re


Image Space rFactor 1.250 and earlier allows remote attackers to cause a denial of service (daemon crash) via (1) an ID 0x30 packet, (2) an ID 0x38 packet, and an invalid 13-bit integer in (3) an ID 0x60 packet and (4) an ID 0x68 packet; and a denial of service (UDP port block) via (5) an ID 0x20 packet and (6) an ID 0x28 packet.


NuFW 2.2.3, and certain other versions after 2.

NuFW |

NuFW 2.2.3, and certain other versions after 2.0, allows remote attackers to bypass time-based packet filtering rules via certain "out of period" choices of packet transmission time.


Multiple buffer overflows in Battlefront Dropte


Multiple buffer overflows in Battlefront Dropteam 1.3.3 and earlier allow remote attackers to execute arbitrary code via (1) a crafted "0x5c" packet or (2) many 32-bit numbers in a "0x18" packet, or cause a denial of service (crash) via (3) a large "0x4b" packet.


Software vulnerabilities results 1 to 20 of 448     
Page: 12345...23