CVE Database

Search and browse vulnerability records from NVD

Showing 50 of 138992 CVEs

CVE ID Severity Description EPSS Published
N/A

The GNU tar command, when used in FTP sessions, may allow an attacker to execute arbitrary commands.

0.6% 1997-01-01
N/A

A quote cwd command on FTP servers can reveal the full path of the home directory of the "ftp" user.

0.9% 1997-01-01
N/A

in.rshd allows users to login with a NULL username and execute commands.

0.6% 1997-01-01
N/A

Windows NT crashes or locks up when a Samba client executes a "cd .." command on a file share.

4.3% 1997-01-01
N/A

Buffer overflow in the win-c-sample program (win-c-sample.exe) in the WebSite web server 1.1e allows remote attackers to execute arbitrary code via a long query string.

7.0% 1997-01-01
N/A

FormMail CGI program can be used by web servers other than the host server that the program resides on.

3.0% 1997-01-01
N/A

Denial of service in syslog by sending it a large number of superfluous messages.

0.2% 1997-01-01
N/A

Remote attackers can mount an NFS file system in Ultrix or OSF, even if it is denied on the access list.

28.1% 1997-01-01
N/A

NFS allows users to use a "cd .." command to access other directories besides the exported file system.

0.6% 1997-01-01
N/A

In older versions of Sendmail, an attacker could use a pipe character to execute root commands.

0.2% 1997-01-01
N/A

Remote access in AIX innd 1.5.1, using control messages.

1.4% 1997-01-01
N/A

Vulnerability in direct audio user space code on HP-UX 10.20 and 10.10 allows local users to cause a denial of service.

0.1% 1996-12-24
N/A

The jj CGI program allows command execution via shell metacharacters.

0.7% 1996-12-24
N/A

aspppd on Solaris 2.5 x86 allows local users to modify arbitrary files and gain root privileges via a symlink attack on the /tmp/.asppp.fifo file.

0.4% 1996-12-20
N/A

Buffer overflow in ppp program in FreeBSD 2.1 and earlier allows local users to gain privileges via a long HOME environment variable.

0.1% 1996-12-19
N/A

swinstall and swmodify commands in SD-UX package in HP-UX systems allow local users to create or overwrite arbitrary files to gain root access.

0.1% 1996-12-19
N/A

Oversized ICMP ping packets can result in a denial of service, aka Ping o' Death.

15.8% 1996-12-18
N/A

Buffer overflow in chfn command in HP-UX 9.X through 10.20 allows local users to gain privileges via a long command line argument.

0.1% 1996-12-13
N/A

Buffer overflow in Vixie Cron library up to version 3.0 allows local users to obtain root access via a long environmental variable.

0.1% 1996-12-12
N/A

Buffer overflow in AIX and Solaris "gethostbyname" library call allows root access through corrupt DNS host names.

3.9% 1996-12-10
N/A

Sendmail decode alias can be used to overwrite sensitive files.

0.7% 1996-12-10
N/A

List of arbitrary files on Web host via nph-test-cgi script.

37.1% 1996-12-10
N/A

Vulnerability in Desktop searchbook program in IRIX 5.0.x through 6.2 sets insecure permissions for certain user files (iconbook and searchbook).

0.1% 1996-12-05
9.8 CRITICAL

Command execution via shell metachars in INN daemon (innd) 1.5 using "newgroup" and "rmgroup" control messages, and others.

1.6% 1996-12-04
N/A

Sendmail allows local users to write to a file and gain group permissions via a .forward or :include: file.

0.1% 1996-12-03
N/A

fsdump command in IRIX allows local users to obtain root access by modifying sensitive files.

0.2% 1996-12-03
N/A

Buffer overflow in HP-UX newgrp program.

1.1% 1996-12-01
N/A

Buffer overflow in cddbd CD database server allows remote attackers to execute arbitrary commands via a long log message.

1.3% 1996-11-26
N/A

Kerberos 4 allows remote attackers to obtain sensitive information via a malformed UDP packet that generates an error string that inadvertently includes the realm name and the last user.

0.8% 1996-11-22
N/A

dxchpwd in Digital Unix (OSF/1) 3.x allows local users to modify arbitrary files via a symlink attack on the dxchpwd.log file.

0.1% 1996-11-17
N/A

Local users can start Sendmail in daemon mode and gain root privileges.

0.9% 1996-11-16
N/A

Vulnerability in ppl in HP-UX 10.x and earlier allows local users to gain root privileges by forcing ppl to core dump.

0.0% 1996-11-03
N/A

Buffer overflow in mstm in HP-UX allows local users to gain root access.

0.1% 1996-11-01
N/A

fpkg2swpk in HP-UX allows local users to gain root access.

0.1% 1996-11-01
N/A

Indigo Magic System Tour in the SGI system tour package (systour) for IRIX 5.x through 6.3 allows local users to gain root privileges via a Trojan horse .exitops program, which is called by the inst command that is executed by the RemoveSystemTour program.

0.6% 1996-10-30
N/A

The WorkMan program can be used to overwrite any file to get root access.

0.1% 1996-10-28
N/A

Buffer overflow in lpr, as used in BSD-based systems including Linux, allows local users to execute arbitrary code as root via a long -C (classification) command line option.

0.2% 1996-10-25
N/A

PASV core dump in wu-ftpd daemon when attacker uses a QUOTE PASV command after specifying a username and password.

0.7% 1996-10-16
N/A

Bash treats any character with a value of 255 as a command separator.

0.1% 1996-10-08
N/A

Buffer overflow in xmcd 2.1 allows local users to gain access through a user resource setting.

0.1% 1996-10-01
N/A

HP-UX gwind program allows users to modify arbitrary files.

0.1% 1996-10-01
N/A

HP Remote Watch allows a remote user to gain root access.

0.7% 1996-10-01
N/A

MIME buffer overflow in Sendmail 8.8.0 and 8.8.1 gives root access.

0.5% 1996-10-01
N/A

HPUX sysdiag allows local users to gain root privileges via a symlink attack during log file creation.

0.1% 1996-09-21
N/A

Denial of service when an attacker sends many SYN packets to create multiple connections without ever sending an ACK to complete the connection, aka SYN flood.

9.0% 1996-09-19
N/A

Transarc DCE Distributed File System (DFS) 1.1 for Solaris 2.4 and 2.5 does not properly initialize the grouplist for users who belong to a large number of groups, which could allow those users to gain access to resources that are protected by DFS.

0.1% 1996-09-17
N/A

(1) bash before 1.14.7, and (2) tcsh 6.05 allow local users to gain privileges via directory names that contain shell metacharacters (` back-tick), which can cause the commands enclosed in the directory name to be executed when the shell expands filenames using the \w option in the PS1 variable.

0.1% 1996-09-13
N/A

Buffer overflow and denial of service in Sendmail 8.7.5 and earlier through GECOS field gives root access to local users.

0.1% 1996-09-11
N/A

Vulnerability in a certain system call in SCO UnixWare 2.0.x and 2.1.0 allows local users to access arbitrary files and gain root privileges.

0.2% 1996-09-04
N/A

ppl program in HP-UX allows local users to create root files through symlinks.

0.1% 1996-09-01