CVE Database

Search and browse vulnerability records from NVD

Showing 50 of 138992 CVEs

CVE ID Severity Description EPSS Published
N/A

Buffer overflow of rlogin program using TERM environmental variable.

6.9% 1997-02-06
N/A

ypbind with -ypset and -ypsetme options activated in Linux Slackware and SunOS allows local and remote attackers to overwrite files via a .. (dot dot) attack.

1.6% 1997-02-05
N/A

rcp on various Linux systems including Red Hat 4.0 allows a "nobody" user or other user with UID of 65535 to overwrite arbitrary files, since 65535 is interpreted as -1 by chown and other system calls, which causes the calls to fail to modify the ownership of the file.

0.5% 1997-02-03
N/A

Vulnerability in ftpd/kftpd in HP-UX 10.x and 9.x allows local and possibly remote users to gain root privileges.

0.4% 1997-02-02
N/A

IRIX startmidi program allows local users to modify arbitrary files via a symlink attack.

0.4% 1997-02-01
N/A

The Sun sdtcm_convert calendar utility for OpenWindows has a buffer overflow which can gain root access.

1.1% 1997-02-01
N/A

HP-UX vgdisplay program gives root access to local users.

0.1% 1997-02-01
N/A

The view-source CGI program allows remote attackers to read arbitrary files via a .. (dot dot) attack.

8.1% 1997-02-01
N/A

Certain files in MPower in HP-UX 10.x are installed with insecure permissions, which allows local users to gain privileges.

0.0% 1997-01-30
N/A

MIME conversion buffer overflow in sendmail versions 8.8.3 and 8.8.4.

2.2% 1997-01-28
N/A

Buffer overflow in Solaris getopt in libc allows local users to gain root privileges via a long argv[0].

0.1% 1997-01-27
N/A

Talkd, when given corrupt DNS information, can be used to execute arbitrary commands with root privileges.

1.9% 1997-01-27
N/A

wu-ftp allows files to be overwritten via the rnfr command.

0.7% 1997-01-11
N/A

Vulnerability in chsh command in HP-UX 9.X through 10.20 allows local users to gain privileges.

0.0% 1997-01-09
N/A

Csetup under IRIX allows arbitrary file creation or overwriting.

0.1% 1997-01-08
N/A

Vulnerability in dtlogin and dtsession in HP-UX 10.20 and 10.10 allows local users to bypass authentication and gain privileges.

0.1% 1997-01-07
N/A

Vulnerability in Glance programs in GlancePlus for HP-UX 10.20 and earlier allows local users to access arbitrary files and gain privileges.

0.1% 1997-01-07
N/A

movemail in HP-UX 10.20 has insecure permissions, which allows local users to gain privileges.

0.1% 1997-01-06
N/A

Arbitrary file creation and program execution using FLEXlm LicenseManager, from versions 4.0 to 5.0, in IRIX.

0.2% 1997-01-06
N/A

netprint in SGI IRIX 6.4 and earlier trusts the PATH environmental variable for finding and executing the disable program, which allows local users to gain privileges.

0.5% 1997-01-04
N/A

A version of rusers is running that exposes valid user information to any entity on the network.

0.6% 1997-01-01
N/A

A Windows NT account policy has inappropriate, security-critical settings for lockout, e.g. lockout duration, lockout after bad logon attempts, etc.

11.6% 1997-01-01
N/A

A Windows NT system's file audit policy does not log an event success or failure for security-critical files or directories.

6.6% 1997-01-01
N/A

A Windows NT system's user audit policy does not log an event success or failure, e.g. for Logon and Logoff, File and Object Access, Use of User Rights, User and Group Management, Security Policy Changes, Restart, Shutdown, and System, and Process Tracking.

8.7% 1997-01-01
N/A

.reg files are associated with the Windows NT registry editor (regedit), making the registry susceptible to Trojan Horse attacks.

9.0% 1997-01-01
N/A

The registry in Windows NT can be accessed remotely by users who are not administrators.

14.1% 1997-01-01
N/A

A router's routing tables can be obtained from arbitrary hosts.

0.5% 1997-01-01
N/A

A Windows NT account policy for passwords has inappropriate, security-critical settings, e.g. for password length, password age, or uniqueness.

9.0% 1997-01-01
N/A

A Windows NT user has inappropriate rights or privileges, e.g. Act as System, Add Workstation, Backup, Change System Time, Create Pagefile, Create Permanent Object, Create Token Name, Debug, Generate Security Audit, Increase Priority, Increase Quota, Load Driver, Lock Memory, Profile Single Process, Remote Shutdown, Replace Process Token, Restore, System Environment, Take Ownership, or Unsolicited Input.

0.3% 1997-01-01
N/A

IP traceroute is allowed from arbitrary hosts.

0.6% 1997-01-01
N/A

An NIS domain name is easily guessable.

0.1% 1997-01-01
N/A

A NETBIOS/SMB share password is the default, null, or missing.

11.5% 1997-01-01
N/A

A NETBIOS/SMB share password is guessable.

5.3% 1997-01-01
N/A

An SNMP community name is the default (e.g. public), null, or missing.

92.0% 1997-01-01
N/A

IP forwarding is enabled on a machine which is not a router or firewall.

9.0% 1997-01-01
N/A

A router or firewall allows source routed packets from arbitrary hosts.

0.8% 1997-01-01
N/A

A Windows NT local user or administrator account has a default, null, blank, or missing password.

39.5% 1997-01-01
N/A

A Windows NT local user or administrator account has a guessable password.

0.6% 1997-01-01
N/A

NETBIOS share information may be published through SNMP registry keys in NT.

4.7% 1997-01-01
N/A

A Windows NT 4.0 user can gain administrative rights by forcing NtOpenProcessToken to succeed regardless of the user's permissions, aka GetAdmin.

0.4% 1997-01-01
N/A

Jolt ICMP attack causes a denial of service in Windows 95 and Windows NT systems.

0.5% 1997-01-01
N/A

Denial of service in Windows NT DNS servers through malicious packet which contains a response to a query that wasn't made.

4.9% 1997-01-01
N/A

ICMP redirect messages may crash or lock up a host.

0.5% 1997-01-01
N/A

IIS 3.0 with the iis-fix hotfix installed allows remote intruders to read source code for ASP programs by using a %2e instead of a . (dot) in the URL.

3.0% 1997-01-01
N/A

Buffer overflow in listserv allows arbitrary command execution.

0.9% 1997-01-01
N/A

Denial of service in talk program allows remote attackers to disrupt a user's display.

0.7% 1997-01-01
N/A

Windows NT RSHSVC program allows remote users to execute arbitrary commands.

1.4% 1997-01-01
7.5 HIGH

ScriptAlias directory in NCSA and Apache httpd allowed attackers to read CGI programs.

17.6% 1997-01-01
N/A

Malicious option settings in UDP packets could force a reboot in SunOS 4.1.3 systems.

0.5% 1997-01-01
N/A

Sendmail 8.6.9 allows remote attackers to execute root commands, using ident.

3.2% 1997-01-01