port software vulnerabilities
vulnerabilities.aspcode.net
Searching port software vulnerabilities
Denial of service in Cisco routers running NAT
routers
|
running
|
command
|
service
|
client
|
Denial
|
Telnet
|
Cisco
|
PORT
|
FTP
|
NAT
|
via
|
Denial of service in Cisco routers running NAT via a PORT command from an FTP client to a Telnet port.
inetd in AIX 4.1.5 dynamically assigns a port N
inetd
|
AIX
|
inetd in AIX 4.1.5 dynamically assigns a port N when starting ttdbserver (ToolTalk server), but also inadvertently listens on port N-1 without passing control to ttdbserver, which allows remote attackers to cause a denial of service via a large number of connections to port N-1, which are not properly closed by inetd.
The command port for PGP Certificate Server 2.5
Certificate
|
command
|
Server
|
port
|
PGP
|
The command port for PGP Certificate Server 2.5.0 and 2.5.1 allows remote attackers to cause a denial of service if their hostname does not have a reverse DNS entry and they connect to port 4000.
IBM DB2 7.0 allows a remote attacker to cause a
attacker
|
service
|
denial
|
remote
|
allows
|
cause
|
IBM
|
DB2
|
IBM DB2 7.0 allows a remote attacker to cause a denial of service (crash) via a single byte to (1) db2ccs.exe on port 6790, or (2) db2jds.exe on port 6789.
wrshdsp.exe in Denicomp Winsock RSHD/NT 2.21.00
wrshdspexe
|
Denicomp
|
RSHD/NT
|
Winsock
|
wrshdsp.exe in Denicomp Winsock RSHD/NT 2.21.00 and earlier allows remote attackers to cause a denial of service (CPU consumption) via (1) in 2.20.00 and earlier, an invalid port number such as a negative number, which causes a connection attempt to that port and all ports below 1024, and (2) in 2.21.00, a port number of 1024.
Netgear RP114 Cable/DSL Web Safe Router Firmwar
Cable/DSL
|
Firmware
|
Netgear
|
Router
|
RP114
|
Safe
|
Web
|
Netgear RP114 Cable/DSL Web Safe Router Firmware 3.26, when configured to block traffic below port 1024, allows remote attackers to cause a denial of service (hang) via a port scan of the WAN port.
AOL Instant Messenger (AIM) allows remote attac
Messenger
|
Instant
|
AOL
|
AOL Instant Messenger (AIM) allows remote attackers to steal files that are being transferred to other clients by connecting to port 4443 (Direct Connection) or port 5190 (file transfer) before the intended user.
Snapgear Lite+ firewall 1.5.4 and 1.5.3 allows
firewall
|
Snapgear
|
Lite+
|
Snapgear Lite+ firewall 1.5.4 and 1.5.3 allows remote attackers to cause a denial of service (crash) via a large number of connections to (1) the HTTP web management port, or (2) the PPTP port.
3Com OfficeConnect Remote 812 ADSL Router, firm
OfficeConnect
|
Remote
|
3Com
|
3Com OfficeConnect Remote 812 ADSL Router, firmware 1.1.9 and 1.1.7, allows remote attackers to bypass port access restrictions by connecting to an approved port and quickly connecting to the desired port, which is allowed by the router.
Buffer overflow in SmartMail Server 1.0 Beta 10
SmartMail
|
attackers
|
overflow
|
service
|
remote
|
denial
|
Server
|
Buffer
|
allows
|
cause
|
Beta
|
Buffer overflow in SmartMail Server 1.0 Beta 10 allows remote attackers to cause a denial of service (crash) via a long request to (1) TCP port 25 (SMTP) or (2) TCP port 110 (POP3).
Buffer overflow in Avirt Soho 4.3 allows remote
attackers
|
overflow
|
service
|
remote
|
denial
|
Buffer
|
allows
|
Avirt
|
cause
|
Soho
|
Buffer overflow in Avirt Soho 4.3 allows remote attackers to cause a denial of service (crash) via (1) a large GET request to port 1080 or (2) a large GET request of % characters to port 8080.
Hired Team: Trial 2.0 and earlier and 2.200 all
Hired
|
Hired Team: Trial 2.0 and earlier and 2.200 allows remote attackers to cause a denial of service (game interruption) via a malformed UDP packet sent to a game port, such as port 29200.
The Cisco IBM Director agent allows remote atta
attackers
|
Director
|
service
|
remote
|
denial
|
allows
|
Cisco
|
cause
|
agent
|
IBM
|
The Cisco IBM Director agent allows remote attackers to cause a denial of service (CPU consumption) via arbitrary packets to TCP port 14247, as demonstrated using port scanning.
Avocent CCM console server running firmware 2.1
authenticated
|
restrictions
|
connecting
|
attackers
|
firmware
|
Avocent
|
console
|
connect
|
command
|
CCM4850
|
running
|
access
|
allows
|
remote
|
server
|
serial
|
bypass
|
using
|
port
|
CCM
|
SSH
|
via
|
Avocent CCM console server running firmware 2.1 CCM4850 allows remote authenticated attackers to bypass port restrictions by connecting to the server via SSH and using the connect command to access the serial port.
Battle Carry .005 and earlier allows remote att
Battle
|
Carry
|
Battle Carry .005 and earlier allows remote attackers to cause a denial of service (inaccessible port) via a large packet, which triggers a socket error and terminates the socket that is listening on the server's UDP port.
Juniper NetScreen-Security Manager (NSM) 2004 F
NetScreen-Security
|
Manager
|
Juniper
|
Juniper NetScreen-Security Manager (NSM) 2004 FP2 and FP3 allow remote attackers to cause a denial of service (crash or hang of server components that are automatically restarted) via a long crafted string on (1) port 7800 (the GUI Server port) or (2) port 7801 (the Device Server port).
Unspecified vulnerability in the Port Discovery
JP1/NetInsight
|
vulnerability
|
Unspecified
|
attackers
|
involving
|
Discovery
|
"invalid
|
Advanced
|
Standard
|
features
|
unknown
|
vectors
|
service
|
Hitachi
|
format
|
allows
|
data"
|
Port
|
stop
|
via
|
Unspecified vulnerability in the Port Discovery Standard and Advanced features in Hitachi JP1/NetInsight II allows attackers to stop the Port Discovery service via unknown vectors involving "invalid format data".
An unspecified "logical programming mistake" in
SynchronEyes
|
programming
|
unspecified
|
attackers
|
discovery
|
possibly
|
versions
|
"logical
|
mistake"
|
service
|
Teacher
|
earlier
|
Student
|
denial
|
packet
|
allows
|
remote
|
large
|
SMART
|
cause
|
port
|
via
|
An unspecified "logical programming mistake" in SMART SynchronEyes Student and Teacher 6.0, and possibly earlier versions, allows remote attackers to cause a denial of service via a large packet to the Teacher discovery port (UDP port 5496), which causes a thread to terminate and prevents communications on that port.
AVM Fritz!Box 7050, and possibly other product
FritzBox
|
AVM
|
AVM Fritz!Box 7050, and possibly other product models, allows remote attackers to cause a denial of service (VoIP application crash) via a zero-length UDP packet to the SIP port (port 5060).
The _udp_lib_get_port function in net/ipv4/udp.
_udp_lib_get_port
|
net/ipv4/udpc
|
function
|
kernel
|
Linux
|
The _udp_lib_get_port function in net/ipv4/udp.c in Linux kernel 2.6.21 and earlier does not prevent a bind to a port with a local address when there is already a bind to that port with a wildcard local address, which might allow local users to intercept local traffic for daemons or other applications.
Software vulnerabilities results 1 to 20 of 468
Page:
1
2
3
4
5
...
24
►