CVE Database

Search and browse vulnerability records from NVD

Showing 50 of 160175 CVEs

CVE ID Severity Description EPSS Published
N/A

websendmail in Webgais 1.0 allows a remote user to access arbitrary files and execute arbitrary code via the receiver parameter ($VAR_receiver variable).

7.0% 1997-07-08
N/A

JavaScript in Internet Explorer 3.x and 4.x, and Netscape 2.x, 3.x and 4.x, allows remote attackers to monitor a user's web activities, aka the Bell Labs vulnerability.

2.9% 1997-07-08
N/A

wu-ftpd 2.4 FTP server does not properly drop privileges when an ABOR (abort file transfer) command is executed during a file transfer, which causes a signal to be handled incorrectly and allows local and possibly remote attackers to read arbitrary files.

0.9% 1997-07-04
N/A

The rwho/rwhod service is running, which exposes machine status and user information.

0.6% 1997-07-01
N/A

A password for accessing a WWW URL is guessable.

0.5% 1997-07-01
N/A

A DNS server allows inverse queries.

0.5% 1997-07-01
N/A

A DNS server allows zone transfers.

70.7% 1997-07-01
N/A

An X server's access control is disabled (e.g. through an "xhost +" command) and allows anyone to connect to the server.

72.7% 1997-07-01
N/A

Denial of service in Qmail through long SMTP commands.

0.6% 1997-07-01
N/A

Buffer overflow in FTP Serv-U 2.5 allows remote authenticated users to cause a denial of service (crash) via a long (1) CWD or (2) LS (list) command.

5.8% 1997-07-01
N/A

Denial of service in RPC portmapper allows attackers to register or unregister RPC services or spoof RPC services using a spoofed source IP address such as 127.0.0.1.

0.2% 1997-07-01
N/A

When compiled with the -DALLOW_UPDATES option, bind allows dynamic updates to the DNS server, allowing for malicious modification of DNS records.

1.2% 1997-07-01
N/A

NFS allows attackers to read and write any file on the system by specifying a false UID.

0.5% 1997-07-01
N/A

wu-ftpd FTP daemon allows any user and password combination.

0.1% 1997-07-01
N/A

Windows 95/NT out of band (OOB) data denial of service through NETBIOS port, aka WinNuke.

18.9% 1997-07-01
N/A

The Perl fingerd program allows arbitrary command execution from remote users.

1.4% 1997-07-01
N/A

The aglimpse CGI program of the Glimpse package allows remote execution of arbitrary commands.

4.5% 1997-07-01
N/A

RIP v1 is susceptible to spoofing.

0.6% 1997-07-01
N/A

Buffer overflow in wu-ftp from PASV command causes a core dump.

1.0% 1997-07-01
N/A

Listening TCP ports are sequentially allocated, allowing spoofing attacks.

5.9% 1997-07-01
N/A

ping in Solaris 2.3 through 2.6 allows local users to cause a denial of service (crash) via a ping request to a multicast address through the loopback interface, e.g. via ping -i.

1.0% 1997-06-26
N/A

Buffer overflow in eeprom in Solaris 2.5.1 and earlier allows local users to gain root privileges via a long command line argument.

0.1% 1997-06-24
N/A

Buffer overflow in zgv in svgalib 1.2.10 and earlier allows local users to execute arbitrary code via a long HOME environment variable.

0.5% 1997-06-19
N/A

MajorCool mj_key_cache program allows local users to modify files via a symlink attack.

0.1% 1997-06-18
N/A

rsh daemon (rshd) generates different error messages when a valid username is provided versus an invalid name, which allows remote attackers to determine valid users on the system.

0.6% 1997-06-13
N/A

Command execution in Sun systems via buffer overflow in the at program.

0.1% 1997-06-12
N/A

getcwd() file descriptor leak in FTP.

0.7% 1997-06-11
N/A

Denial of service in Windows NT DNS servers by flooding port 53 with too many characters.

6.4% 1997-06-10
N/A

Solaris rpcbind listens on a high numbered UDP port, which may not be filtered since the standard port number is 111.

0.5% 1997-06-04
N/A

Buffer overflow in bootpd 2.4.3 and earlier via a long boot file location.

0.5% 1997-06-01
N/A

Denial of service in IIS using long URLs.

6.9% 1997-06-01
N/A

Access violation in LSASS.EXE (LSA/LSARPC) program in Windows NT allows a denial of service.

6.1% 1997-06-01
N/A

Denial of service in Qmail by specifying a large number of recipients with the RCPT command.

2.0% 1997-06-01
N/A

Buffer overflow in suidperl (sperl), Perl 4.x and 5.x.

0.3% 1997-05-29
5.4 MEDIUM

Race condition in signal handling routine in ftpd, allowing read/write arbitrary files.

0.3% 1997-05-29
N/A

Vulnerability in runtime linker program rld in SGI IRIX 6.x and earlier allows local users to gain privileges via setuid and setgid programs.

0.1% 1997-05-28
N/A

Buffer overflow in AIX lquerylv program gives root access to local users.

0.3% 1997-05-26
8.4 HIGH

IRIX login program with a nonzero LOCKOUT parameter allows creation or damage to files.

0.8% 1997-05-26
N/A

cfingerd lists all users on a system via search.**@target.

0.6% 1997-05-23
N/A

Arbitrary command execution via metamail package using message headers, when user processes attacker's message using metamail.

2.1% 1997-05-21
N/A

SunOS 4.1.4 on a Sparc 20 machine allows local users to cause a denial of service (kernel panic) by reading from the /dev/tcx0 TCX device.

0.1% 1997-05-19
N/A

Buffer overflow in chkey in Solaris 2.5.1 and earlier allows local users to gain root privileges via a long command line argument.

1.1% 1997-05-19
N/A

The access permissions for a UNIX domain socket are ignored in Solaris 2.x and SunOS 4.x, and other BSD-based operating systems before 4.4, which could allow local users to connect to the socket and possibly disrupt or control the operations of the program using that socket.

0.3% 1997-05-17
N/A

Untrusted search path vulnerability in day5datacopier in SGI IRIX 6.2 allows local users to execute arbitrary commands via a modified PATH environment variable that points to a malicious cp program.

0.1% 1997-05-16
N/A

Ascom Timeplex router allows remote attackers to obtain sensitive information or conduct unauthorized activities by entering debug mode through a sequence of CTRL-D characters.

0.6% 1997-05-15
N/A

Buffer overflow in HPUX passwd command allows local users to gain root privileges via a command line option.

0.1% 1997-05-14
N/A

Buffer overflow in Elm 2.4 and earlier allows local users to gain privileges via a long TERM environmental variable.

0.4% 1997-05-13
N/A

Buffer overflow in (1) pluggable authentication module (PAM) on Solaris 2.5.1 and 2.5 and (2) unix_scheme in Solaris 2.4 and 2.3 allows local users to gain root privileges via programs that use these modules such as passwd, yppasswd, and nispasswd.

0.3% 1997-05-13
N/A

addnetpr in IRIX 5.3 and 6.2 allows local users to overwrite arbitrary files and possibly gain root privileges via a symlink attack on the printers temporary file.

0.9% 1997-05-09
N/A

addnetpr in SGI IRIX 6.2 and earlier allows local users to modify arbitrary files and possibly gain root access via a symlink attack on a temporary file.

0.4% 1997-05-09