Searching utf 8 software vulnerabilities


Buffer overflow in tip in Solaris 8 and earlier


Buffer overflow in tip in Solaris 8 and earlier allows local users to execute arbitrary commands via a long HOME environmental variable.


RealPlayer 8 allows remote attackers to cause a


RealPlayer 8 allows remote attackers to cause a denial of service (CPU utilization) via malformed .mp3 files.


Format string vulnerability in the logging comp


Format string vulnerability in the logging component of snmpdx for Solaris 5.6 through 8 allows remote attackers to gain root privileges.


Buffer overflow in the MIB parsing component of


Buffer overflow in the MIB parsing component of mibiisa for Solaris 5.6 through 8 allows remote attackers to gain root privileges.


Unknown vulnerability in Solaris 8 for Intel an


Unknown vulnerability in Solaris 8 for Intel and Solaris 8 and 9 for SPARC allows remote attackers to cause a denial of service via certain packets that cause some network interfaces to stop responding to TCP traffic.


Solaris 8 with IPv6 enabled allows remote attac


Solaris 8 with IPv6 enabled allows remote attackers to cause a denial of service (kernel panic) via a crafted IPv6 packet.


Memory leak in lofiadm in Solaris 8 allows loca


Memory leak in lofiadm in Solaris 8 allows local users to cause a denial of service (kernel memory consumption).


The FTP client for Solaris 2.6, 7, and 8 with t


The FTP client for Solaris 2.6, 7, and 8 with the debug (-d) flag enabled displays the user password on the screen during login.


Aspppls for Solaris 8 allows local users to ove


Aspppls for Solaris 8 allows local users to overwrite arbitrary files via a symlink attack on the .asppp.fifo temporary file.


Unknown vulnerability in in.named on Solaris 8


Unknown vulnerability in in.named on Solaris 8 allows remote attackers to cause a denial of service (process crash).


Solaris 7, 8, and 9 allows remote attackers to


Solaris 7, 8, and 9 allows remote attackers to cause a denial of service (hang) via a flood of certain ARP packets.


Unknown vulnerability in lpadmin on Sun Solaris


Unknown vulnerability in lpadmin on Sun Solaris 7, 8, and 9 allows local users to overwrite arbitrary files.


Buffer overflow in the CA-driver (dst_ca.c) for


Buffer overflow in the CA-driver (dst_ca.c) for TwinHan DST Frontend/Card in Linux kernel 2.6.12 and other versions before 2.6.15 allows local users to cause a denial of service (crash) and possibly execute arbitrary code by "reading more than 8 bytes into an 8 byte long array".


Crypt::CBC Perl module 2.16 and earlier, when r


Crypt::CBC Perl module 2.16 and earlier, when running in RandomIV mode, uses an initialization vector (IV) of 8 bytes, which results in weaker encryption when used with a cipher that requires a larger block size than 8 bytes, such as Rijndael.


The web interface on Cisco IOS 12.3(8)JA and 12


The web interface on Cisco IOS 12.3(8)JA and 12.3(8)JA1, as used on the Cisco Wireless Access Point and Wireless Bridge, reconfigures itself when it is changed to use the "Local User List Only (Individual Passwords)" setting, which removes all security and password configurations and allows remote attackers to access the system.


Cross-site scripting (XSS) vulnerability in the


Cross-site scripting (XSS) vulnerability in the webform module in Drupal 4.6 before July 8, 2006 and 4.7 before July 8, 2006 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.


Stack-based buffer overflow in the SFX module i


Stack-based buffer overflow in the SFX module in WinRAR before 3.60 beta 8 has unspecified vectors and impact.


Cross-site scripting (XSS) vulnerability in Out


Cross-site scripting (XSS) vulnerability in Outlook Web Access (OWA) in Microsoft Exchange Server 2000 SP3, and 2003 SP1 and SP2 allows remote attackers to execute arbitrary scripts, spoof content, or obtain sensitive information via certain UTF-encoded, script-based e-mail attachments, involving an "incorrectly handled UTF character set label".


Cisco IOS after 12.3(14)T, 12.3(8)YC1, 12.3(8)Y

after | Cisco | IOS |

Cisco IOS after 12.3(14)T, 12.3(8)YC1, 12.3(8)YG, and 12.4, with voice support and without Session Initiated Protocol (SIP) configured, allows remote attackers to cause a denial of service (crash) by sending a crafted packet to port 5060/UDP.


SQL injection vulnerability in eWebQuiz.asp in


SQL injection vulnerability in eWebQuiz.asp in eWebQuiz 8 allows remote attackers to execute arbitrary SQL commands via the QuizID parameter.


Software vulnerabilities results 1 to 20 of 549     
Page: 12345...28