through software vulnerabilities
vulnerabilities.aspcode.net
Searching through software vulnerabilities
Denial of service of inetd on Linux through SYN
packets
|
through
|
service
|
Denial
|
inetd
|
Linux
|
RST
|
SYN
|
Denial of service of inetd on Linux through SYN and RST packets.
Denial of service in Qmail through long SMTP co
commands
|
through
|
service
|
Denial
|
Qmail
|
SMTP
|
long
|
Denial of service in Qmail through long SMTP commands.
NETBIOS share information may be published thro
information
|
published
|
registry
|
through
|
NETBIOS
|
share
|
keys
|
SNMP
|
may
|
NETBIOS share information may be published through SNMP registry keys in NT.
An SSH server allows authentication through the
authentication
|
through
|
rhosts
|
server
|
allows
|
file
|
SSH
|
An SSH server allows authentication through the .rhosts file.
Unknown vulnerability in HP NonStop Server D40.
vulnerability
|
privileges
|
additional
|
through
|
Unknown
|
NonStop
|
allows
|
Server
|
local
|
users
|
D4000
|
D4803
|
G0620
|
G0100
|
gain
|
Unknown vulnerability in HP NonStop Server D40.00 through D48.03, and G01.00 through G06.20, allows local users to gain additional privileges.
Unknown vulnerability in patches 108993-14 thro
vulnerability
|
108993-19
|
108994-14
|
108994-19
|
108993-14
|
Solaris
|
service
|
Unknown
|
through
|
patches
|
denial
|
cause
|
users
|
allow
|
local
|
may
|
Unknown vulnerability in patches 108993-14 through 108993-19 and 108994-14 through 108994-19 for Solaris 8 may allow local users to cause a denial of service (automountd crash).
Xerox MicroServer Web Server for various WorkCe
MicroServer
|
M35/M45/M55
|
WorkCentre
|
including
|
products
|
various
|
Server
|
Xerox
|
Web
|
Xerox MicroServer Web Server for various WorkCentre products including M35/M45/M55 2.028.11.000 through 2.97.20.032 and 4.84.16.000 through 4.97.20.032, Pro 35/45/55 3.028.11.000 through 3.97.20.032, Pro 65/75/90 1.001.00.060 through 1.001.02.084, and others, has an "unauthenticated account," which allows remote attackers to modify system configuration, a different vulnerability than CVE-2005-1179.
Unknown vulnerability in HP OpenView Network No
vulnerability
|
OpenView
|
Manager
|
Network
|
Unknown
|
Node
|
Unknown vulnerability in HP OpenView Network Node Manager (NMM) 6.2 through 6.4, and 7.01 through 7.50, allows remote attackers to cause a denial of service.
Unknown vulnerability in Xerox MicroServer Web
vulnerability
|
MicroServer
|
Document
|
Unknown
|
Server
|
Centre
|
Xerox
|
Web
|
Unknown vulnerability in Xerox MicroServer Web Server in Document Centre 220 through 265, 332 and 340, 420 through 490, and 535 through 555 allows remote attackers to bypass authentication.
Unknown vulnerability in Xerox MicroServer Web
vulnerability
|
MicroServer
|
Document
|
Unknown
|
Server
|
Centre
|
Xerox
|
Web
|
Unknown vulnerability in Xerox MicroServer Web Server in Document Centre 220 through 265, 332 and 340, 420 through 490, and 535 through 555 allows remote attackers to cause a denial of service or read files via unknown vectors involving crafted HTTP requests.
Cross-site scripting (XSS) vulnerability in Xer
Cross-site
|
scripting
|
Cross-site scripting (XSS) vulnerability in Xerox MicroServer Web Server in Document Centre 220 through 265, 332 and 340, 420 through 490, and 535 through 555 allows remote attackers to inject arbitrary web script or HTML and modify web pages via unknown vectors.
Unspecified vulnerability in Hitachi Cosminexus
Collaboration
|
vulnerability
|
Unspecified
|
Cosminexus
|
component
|
attackers
|
07-10-/B
|
requests
|
07-10-/A
|
repeated
|
Schedule
|
06-10-/B
|
Groupmax
|
Hitachi
|
service
|
through
|
invalid
|
denial
|
impact
|
Client
|
Portal
|
remote
|
06-00
|
07-00
|
cause
|
allow
|
via
|
Web
|
Unspecified vulnerability in Hitachi Cosminexus Collaboration Portal 06-00 through 06-10-/B, Groupmax Collaboration Portal 07-00 through 07-10-/B, and Groupmax Collaboration Web Client 07-00 through 07-10-/A allow remote attackers to cause a denial of service of unspecified impact via repeated invalid requests to the Schedule component.
Unspecified vulnerability in BEA WebLogic Serve
circumstances
|
vulnerability
|
unencrypted
|
credentials
|
Unspecified
|
privileges
|
attackers
|
cleartext
|
protocol
|
intended
|
WebLogic
|
network
|
certain
|
Express
|
through
|
across
|
allows
|
remote
|
Server
|
causes
|
which
|
gain
|
user
|
used
|
sent
|
SP7
|
SSL
|
SP6
|
SP3
|
BEA
|
Unspecified vulnerability in BEA WebLogic Server and WebLogic Express 8.1 through SP3, 7.0 through SP6, and 6.1 through SP7, when SSL is intended to be used, causes an unencrypted protocol to be used in certain unspecified circumstances, which causes user credentials to be sent across the network in cleartext and allows remote attackers to gain privileges.
BEA WebLogic Server and WebLogic Express 8.1 th
application
|
connection
|
attackers
|
WebLogic
|
insecure
|
creates
|
already
|
created
|
Express
|
through
|
allows
|
remote
|
Server
|
client
|
sniff
|
which
|
after
|
Java
|
use
|
SP6
|
SP4
|
BEA
|
has
|
SSL
|
SP7
|
BEA WebLogic Server and WebLogic Express 8.1 through SP4, 7.0 through SP6, and 6.1 through SP7, when a Java client application creates an SSL connection to the server after it has already created an insecure connection, will use the insecure connection, which allows remote attackers to sniff the connection.
BEA WebLogic Server and WebLogic Express 8.1 th
configuration
|
authenticated
|
information
|
sensitive
|
WebLogic
|
Express
|
through
|
remote
|
obtain
|
Server
|
allows
|
users
|
guest
|
read
|
SP7
|
BEA
|
SP4
|
log
|
SP6
|
BEA WebLogic Server and WebLogic Express 8.1 through SP4, 7.0 through SP6, and 6.1 through SP7 allows remote authenticated guest users to read the server log and obtain sensitive configuration information.
Unspecified vulnerability in BEA WebLogic Serve
vulnerability
|
applications
|
Unspecified
|
untrusted
|
WebLogic
|
private
|
through
|
allows
|
Server
|
obtain
|
keys
|
SP5
|
BEA
|
SP7
|
SP6
|
Unspecified vulnerability in BEA WebLogic Server 9.1 and 9.0, 8.1 through SP5, 7.0 through SP6, and 6.1 through SP7 allows untrusted applications to obtain private server keys.
Multiple cross-site scripting (XSS) vulnerabili
cross-site
|
scripting
|
Multiple
|
Multiple cross-site scripting (XSS) vulnerabilities in the appdev/sample/web/hello.jsp example application in Tomcat 4.0.0 through 4.0.6, 4.1.0 through 4.1.36, 5.0.0 through 5.0.30, 5.5.0 through 5.5.23, and 6.0.0 through 6.0.10 allow remote attackers to inject arbitrary web script or HTML via the test parameter and unspecified vectors.
Multiple cross-site scripting (XSS) vulnerabili
cross-site
|
scripting
|
Multiple
|
Multiple cross-site scripting (XSS) vulnerabilities in certain JSP files in the examples web application in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0 through 4.1.36, 5.0.0 through 5.0.30, 5.5.0 through 5.5.24, and 6.0.0 through 6.0.13 allow remote attackers to inject arbitrary web script or HTML via the portion of the URI after the ';' character, as demonstrated by a URI containing a "snp/snoop.jsp;" sequence.
Multiple cross-site scripting (XSS) vulnerabili
cross-site
|
scripting
|
Multiple
|
Multiple cross-site scripting (XSS) vulnerabilities in the (1) Manager and (2) Host Manager web applications in Apache Tomcat 4.0.0 through 4.0.6, 4.1.0 through 4.1.36, 5.0.0 through 5.0.30, 5.5.0 through 5.5.24, and 6.0.0 through 6.0.13 allow remote authenticated users to inject arbitrary web script or HTML via a parameter name to manager/html/upload, and other unspecified vectors.
Unspecified vulnerability in HP Select Identity
vulnerability
|
Unspecified
|
Identity
|
Select
|
Unspecified vulnerability in HP Select Identity 4.01 through 4.01.010 and 4.10 through 4.13.001 allows remote attackers to obtain unspecified access via unknown vectors.
Software vulnerabilities results 1 to 20 of 1433
Page:
1
2
3
4
5
...
72
►