Searching requests software vulnerabilities


Cabletron SmartSwitch Router (SSR) 8000 firmwar


Cabletron SmartSwitch Router (SSR) 8000 firmware 2.x can only handle 200 ARP requests per second allowing a denial of service attack to succeed with a flood of ARP requests exceeding that limit.


ZoneAlarm sends sensitive system and network in


ZoneAlarm sends sensitive system and network information in cleartext to the Zone Labs server if a user requests more information about an event.


Small HTTP Server 2.01 allows remote attackers


Small HTTP Server 2.01 allows remote attackers to cause a denial of service by connecting to the server and sending out multiple GET, HEAD, or POST requests and closing the connection before the server responds to the requests.


NAI Sniffer Agent allows remote attackers to ca


NAI Sniffer Agent allows remote attackers to cause a denial of service (crash) by sending a large number of login requests.


WatchGuard SOHO FireWall 2.2.1 and earlier allo


WatchGuard SOHO FireWall 2.2.1 and earlier allows remote attackers to cause a denial of service via a large number of GET requests.


WFTPD 3.00 R5 allows a remote attacker to cause


WFTPD 3.00 R5 allows a remote attacker to cause a denial of service by making repeated requests to cd to the floppy drive (A:\).


Omnicron OmniHTTPd 2.0.8 allows remote attacker


Omnicron OmniHTTPd 2.0.8 allows remote attackers to cause a denial of service (memory exhaustion) via a series of requests for PHP scripts.


Jigsaw 2.2.1 on Windows systems allows remote a


Jigsaw 2.2.1 on Windows systems allows remote attackers to use MS-DOS device names in HTTP requests to (1) cause a denial of service using the "con" device, or (2) obtain the physical path of the server using two requests to the "aux" device.


HP Praesidium Webproxy 1.0 running on HP-UX 11.


HP Praesidium Webproxy 1.0 running on HP-UX 11.04 VVOS could allow remote attackers to cause Webproxy to forward requests to the internal network via crafted HTTP requests.


The Catalina org.apache.catalina.connector.http


The Catalina org.apache.catalina.connector.http package in Tomcat 4.0.x up to 4.0.3 allows remote attackers to cause a denial of service via several requests that do not follow the HTTP protocol, which causes Tomcat to reject later requests.


AppleFileServer (AFS) in Apple Mac OS X 10.2.8


AppleFileServer (AFS) in Apple Mac OS X 10.2.8 and 10.3.2 does not properly handle certain malformed requests, with unknown impact.


RealNetworks Helix Universal Server 9.0.1 and 9


RealNetworks Helix Universal Server 9.0.1 and 9.0.2 allows remote attackers to cause a denial of service (crash) via malformed requests that trigger a null dereference, as demonstrated using (1) GET_PARAMETER or (2) DESCRIBE requests.


ifconfig "-arp" in SGI IRIX 6.5 through 6.5.22m


ifconfig "-arp" in SGI IRIX 6.5 through 6.5.22m does not properly disable ARP requests from being sent or received.


e107 0.6174 allows remote attackers to vote mul

e107 |

e107 0.6174 allows remote attackers to vote multiple times for a download via repeated requests to rate.php.


Kadu 0.4.3 allows remote attackers to cause a d

Kadu |

Kadu 0.4.3 allows remote attackers to cause a denial of service (application crash) via a large number of image send requests.


BEA WebLogic Server 9.0, 9.1, and 9.2 Gold allo


BEA WebLogic Server 9.0, 9.1, and 9.2 Gold allows remote attackers to obtain sensitive information via malformed HTTP requests, which reveal data from previous requests.


AstroCam before 2.6.6 allows remote attackers t


AstroCam before 2.6.6 allows remote attackers to cause a denial of service (daemon shutdown) via certain requests to the web interface.


Flyspray 0.9.9 allows remote attackers to obtai


Flyspray 0.9.9 allows remote attackers to obtain sensitive information (private project summaries) via direct requests.


daemon.c in cman (redhat-cluster-suite) before


daemon.c in cman (redhat-cluster-suite) before Friday, June 22, 2007 does not clear a buffer for reading requests, which might allow local users to obtain sensitive information from previous requests.


LiteWEB 2.7 allows remote attackers to cause a


LiteWEB 2.7 allows remote attackers to cause a denial of service (hang) via a large number of requests for nonexistent pages.


Software vulnerabilities results 1 to 20 of 390     
Page: 12345...20