Searching perform software vulnerabilities


ptylogin in Unix systems allows users to perfor


ptylogin in Unix systems allows users to perform a denial of service by locking out modems, dial out with that modem, or obtain passwords.


Eudora 4.1 allows remote attackers to perform a


Eudora 4.1 allows remote attackers to perform a denial of service by sending attachments with long file names.


Linux 2.2.3 and earlier allow a remote attacker


Linux 2.2.3 and earlier allow a remote attacker to perform an IP fragmentation attack, causing a denial of service.


Local users can perform a denial of service in


Local users can perform a denial of service in Alpha Linux, using MILO to force a reboot.


Buffer overflow in Linux autofs module through


Buffer overflow in Linux autofs module through long directory names allows local users to perform a denial of service.


A system is operating in "promiscuous" mode whi


A system is operating in "promiscuous" mode which allows it to perform packet sniffing.


dbmlparser.exe CGI guestbook program does not p


dbmlparser.exe CGI guestbook program does not perform a chroot operation properly, which allows remote attackers to read arbitrary files.


The sysgen service in Aptis Totalbill does not


The sysgen service in Aptis Totalbill does not perform authentication, which allows remote attackers to gain root privileges by connecting to the service and specifying the commands to be executed.


TWIG 2.6.2 and earlier allows remote attackers

TWIG |

TWIG 2.6.2 and earlier allows remote attackers to perform unauthorized database operations via a SQL injection attack on the id parameter.


Multiple SQL injection vulnerabilities in CARE


Multiple SQL injection vulnerabilities in CARE 2002 before beta 1.0.02 allow remote attackers to perform unauthorized database operations.


SQL injection vulnerability in groupcp.php for


SQL injection vulnerability in groupcp.php for phpBB 2.0.6 and earlier allows group moderators to perform unauthorized activities via the sql_in parameter.


index.php for Zorum 3.5 allows remote attackers


index.php for Zorum 3.5 allows remote attackers to perform certain actions as other users by modifying the id parameter.


management.php in Realnode Emilda 1.2.2 and ear


management.php in Realnode Emilda 1.2.2 and earlier allows remote attackers to perform actions as other users by modifying the user_id parameter.


PunBB before 1.2.8 allows remote attackers to p


PunBB before 1.2.8 allows remote attackers to perform "code inclusion" via the user language selection.


StoreBackup before 1.19 allows local users to p


StoreBackup before 1.19 allows local users to perform unauthorized operations on arbitrary files via a symlink attack on temporary files.


Unspecified vulnerability in PEAR.php in Joomla


Unspecified vulnerability in PEAR.php in Joomla! before 1.0.11 allows remote attackers to perform "remote execution," related to "Injection Flaws."


Unspecified scripts in the admin directory in 8


Unspecified scripts in the admin directory in 8pixel.net SimpleBlog 3.0 and earlier do not properly perform authentication, which allows remote attackers to add users and perform certain other unauthorized privileged actions. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.


Cross-site request forgery (CSRF) vulnerability


Cross-site request forgery (CSRF) vulnerability in the AdminPanel in WordPress 2.1.1 and earlier allows remote attackers to perform privileged actions as administrators, as demonstrated using the delete action in wp-admin/post.php. NOTE: this issue can be leveraged to perform cross-site scripting (XSS) attacks and steal cookies via the post parameter.


The processor_request function in the debugger


The processor_request function in the debugger server for DataRescue IDA Pro 5.0 and 5.1 does not verify that authentication has taken place before invoking the perform_request function, which allows remote attackers to perform unauthorized actions.


Entertainment CMS allows remote attackers to by


Entertainment CMS allows remote attackers to bypass authentication and perform certain administrative actions by setting the adminLogged cookie to "Administrator."


Software vulnerabilities results 1 to 20 of 262     
Page: 12345...14