universal software vulnerabilities
vulnerabilities.aspcode.net
Searching universal software vulnerabilities
IBM DB2 Universal Database version 6.1 creates
Universal
|
attackers
|
databasse
|
Database
|
password
|
default
|
account
|
version
|
creates
|
allows
|
remote
|
access
|
which
|
gain
|
user
|
name
|
IBM
|
DB2
|
IBM DB2 Universal Database version 6.1 creates an account with a default user name and password, which allows remote attackers to gain access to the databasse.
Universal Plug and Play (UPnP) in Windows 98, 9
Universal
|
Play
|
Plug
|
Universal Plug and Play (UPnP) in Windows 98, 98SE, ME, and XP allows remote attackers to cause a denial of service (memory consumption or crash) via a malformed UPnP request.
Buffer overflow in sqllib/security/db2ckpw for
sqllib/security/db2ckpw
|
descriptor
|
arbitrary
|
Universal
|
Database
|
username
|
argument
|
overflow
|
execute
|
Buffer
|
allows
|
local
|
users
|
read
|
file
|
code
|
long
|
IBM
|
DB2
|
via
|
Buffer overflow in sqllib/security/db2ckpw for IBM DB2 Universal Database 6.0 and 7.0 allows local users to execute arbitrary code via a long username that is read from a file descriptor argument.
Buffer overflow in the RTSP protocol parser for
protocol
|
overflow
|
plug-in
|
Source
|
parser
|
Buffer
|
RTSP
|
View
|
Buffer overflow in the RTSP protocol parser for the View Source plug-in (vsrcplin.so or vsrcplin3260.dll) for RealNetworks Helix Universal Server 9 and RealSystem Server 8, 7 and RealServer G2 allows remote attackers to execute arbitrary code.
Buffer overflow in db2dart in IBM DB2 Universal
privileges
|
Universal
|
argument
|
overflow
|
db2dart
|
command
|
Fixpak
|
allows
|
before
|
Buffer
|
users
|
local
|
long
|
line
|
root
|
Data
|
Base
|
gain
|
DB2
|
via
|
IBM
|
Buffer overflow in db2dart in IBM DB2 Universal Data Base 7.2 before Fixpak 10 allows local users to gain root privileges via a long command line argument.
Buffer overflow in db2licm in IBM DB2 Universal
privileges
|
Universal
|
argument
|
overflow
|
command
|
db2licm
|
Fixpak
|
allows
|
before
|
Buffer
|
local
|
users
|
root
|
Base
|
long
|
line
|
Data
|
gain
|
DB2
|
IBM
|
via
|
10a
|
Buffer overflow in db2licm in IBM DB2 Universal Data Base 7.2 before Fixpak 10a allows local users to gain root privileges via a long command line argument.
Stack-based buffer overflow in IBM DB2 Universa
Stack-based
|
privileges
|
"Connect"
|
Universal
|
arbitrary
|
attackers
|
overflow
|
command
|
execute
|
allows
|
before
|
buffer
|
Fixpak
|
LOAD
|
code
|
Base
|
Data
|
via
|
IBM
|
DB2
|
10a
|
Stack-based buffer overflow in IBM DB2 Universal Data Base 7.2 before Fixpak 10 and 10a, and 8.1 before Fixpak 2, allows attackers with "Connect" privileges to execute arbitrary code via a LOAD command.
Stack-based buffer overflow in IBM DB2 Universa
Stack-based
|
privileges
|
Universal
|
attackers
|
"Connect"
|
arbitrary
|
overflow
|
command
|
Windows
|
execute
|
allows
|
INVOKE
|
before
|
Fixpak
|
buffer
|
code
|
Data
|
Base
|
IBM
|
10a
|
DB2
|
via
|
Stack-based buffer overflow in IBM DB2 Universal Data Base 7.2 for Windows, before Fixpak 10a, allows attackers with "Connect" privileges to execute arbitrary code via the INVOKE command.
IBM DB2 Universal Database 7 before FixPak 12 c
directories
|
permissions
|
Universal
|
Database
|
insecure
|
creates
|
certain
|
before
|
FixPak
|
IBM
|
DB2
|
DMS
|
IBM DB2 Universal Database 7 before FixPak 12 creates certain DMS directories with insecure permissions (777), which allows local users to modify or delete certain DB2 files.
Multiple buffer overflows in IBM DB2 Universal
arguments
|
arbitrary
|
Universal
|
overflows
|
Multiple
|
Database
|
execute
|
command
|
buffer
|
users
|
allow
|
local
|
line
|
code
|
long
|
IBM
|
DB2
|
may
|
via
|
Multiple buffer overflows in IBM DB2 Universal Database 8.1 may allow local users to execute arbitrary code via long command line arguments to (1) db2start, (2) db2stop, or (3) db2govd.
Multiple format string vulnerabilities in IBM D
vulnerabilities
|
arguments
|
Universal
|
arbitrary
|
Database
|
Multiple
|
execute
|
certain
|
command
|
format
|
string
|
users
|
allow
|
local
|
line
|
code
|
IBM
|
DB2
|
via
|
may
|
Multiple format string vulnerabilities in IBM DB2 Universal Database 8.1 may allow local users to execute arbitrary code via certain command line arguments to (1) db2start, (2) db2stop, or (3) db2govd.
RealNetworks Helix Universal Server 9.0.1 and 9
RealNetworks
|
Universal
|
Server
|
Helix
|
RealNetworks Helix Universal Server 9.0.1 and 9.0.2 allows remote attackers to cause a denial of service (crash) via malformed requests that trigger a null dereference, as demonstrated using (1) GET_PARAMETER or (2) DESCRIBE requests.
RealNetworks Helix Universal Server 9.0.2 for L
RealNetworks
|
Universal
|
Server
|
Helix
|
RealNetworks Helix Universal Server 9.0.2 for Linux and 9.0.3 for Windows allows remote attackers to cause a denial of service (CPU and memory exhaustion) via a POST request with a Content-Length header set to -1.
IBM DB2 Universal Database (UDB) 820 before 8.2
Universal
|
Database
|
IBM
|
DB2
|
IBM DB2 Universal Database (UDB) 820 before 8.2 FP10 allows remote authenticated users to cause a denial of service (disk consumption) via a hash join (hsjn) that triggers an infinite loop in sqlri_hsjnFlushBlocks.
IBM DB2 Universal Database (UDB) 810 before ver
Universal
|
Database
|
IBM
|
DB2
|
IBM DB2 Universal Database (UDB) 810 before version 8 FixPak 10 allows remote authenticated users to cause a denial of service (db2jd service crash) by "connecting from a downlevel client."
IBM DB2 Universal Database (UDB) before 8.2 Fix
Universal
|
Database
|
IBM
|
DB2
|
IBM DB2 Universal Database (UDB) before 8.2 FixPak 12 allows remote attackers to cause a denial of service (application crash) by sending "incorrect information ... regarding the package name/creator," which leads to a "memory overwrite."
Siemens Speedstream Wireless Router 2624 allows
Speedstream
|
Wireless
|
Siemens
|
Router
|
Siemens Speedstream Wireless Router 2624 allows local users to bypass authentication and access protected files by using the Universal Plug and Play UPnP/1.0 component.
The Universal Disk Format (UDF) filesystem driv
Universal
|
Format
|
Disk
|
The Universal Disk Format (UDF) filesystem driver in Linux kernel 2.6.17 and earlier allows local users to cause a denial of service (hang and crash) via certain operations involving truncated files, as demonstrated via the dd command.
Integer overflow in the fatfile_getarch2 in App
fatfile_getarch2
|
corruption
|
arbitrary
|
Universal
|
possibly
|
triggers
|
overflow
|
Integer
|
execute
|
crafted
|
program
|
service
|
memory
|
Mach-O
|
allows
|
denial
|
Apple
|
local
|
cause
|
users
|
code
|
Mac
|
via
|
Integer overflow in the fatfile_getarch2 in Apple Mac OS X allows local users to cause a denial of service and possibly execute arbitrary code via a crafted Mach-O Universal program that triggers memory corruption.
IBM DB2 Universal Database (UDB) 9.1 GA through
Universal
|
Database
|
IBM
|
DB2
|
IBM DB2 Universal Database (UDB) 9.1 GA through 9.1 FP1 allows local users with table SELECT privileges to perform unauthorized UPDATE and DELETE SQL commands via unknown vectors.
Software vulnerabilities results 1 to 20 of 43
Page:
1
2
3
►