Search Results (29825 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2005-0331 1 Rarlab 1 Winrar 2025-04-03 N/A
Directory traversal vulnerability in WinRAR 3.42 and earlier, when the user clicks on the ZIP file to extract it, allows remote attackers to create arbitrary files via a ... (triple dot) in the filename of the ZIP file.
CVE-2005-0332 1 Ventia 1 Desknow Mail And Collaboration Server 2025-04-03 N/A
Directory traversal vulnerability in DeskNow Mail and Collaboration Server 2.5.12 allows remote attackers to (1) upload and possibly execute files outside the directory via the AttachmentsKey parameter to attachment.do, as demonstrated using JSP pages, or (2) delete arbitrary files via the select_file parameter to file.do.
CVE-1999-0461 2 Linux, Sgi 2 Linux Kernel, Irix 2025-04-03 N/A
Versions of rpcbind including Linux, IRIX, and Wietse Venema's rpcbind allow a remote attacker to insert and delete entries by spoofing a source address.
CVE-1999-0467 1 Webcom 1 Cgi Guestbook 2025-04-03 N/A
The Webcom CGI Guestbook programs wguest.exe and rguest.exe allow a remote attacker to read arbitrary files using the "template" parameter.
CVE-2005-0336 1 Emotion 1 Mediapartner Web Server 2025-04-03 N/A
Cross-site scripting (XSS) vulnerability in EMotion MediaPartner Web Server 5.0 allows remote attackers to inject arbitrary HTML or web script, as demonstrated using a URL containing .. sequences and HTML, which results in a directory browsing page that does not properly filter the HTML.
CVE-2005-0338 1 Savant 1 Savant Webserver 2025-04-03 N/A
Buffer overflow in Savant Web Server 3.1 allows remote attackers to execute arbitrary code via a long HTTP request.
CVE-2005-0339 1 Foxmail 1 Foxmail Email Server 2025-04-03 N/A
Buffer overflow in Foxmail 2.0 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long MAIL FROM command.
CVE-2005-0340 1 Apple 1 Afp Server 2025-04-03 N/A
Integer signedness error in Apple File Service (AFP Server) allows remote attackers to cause a denial of service (application crash) via a negative UAM string length in a FPLoginExt packet.
CVE-2005-0341 1 Apple 1 Safari 2025-04-03 N/A
Apple Safari 1.2.4 does not obey the Content-type field in the HTTP header and renders text as HTML, which allows remote attackers to inject arbitrary web script or HTML and perform cross-site scripting (XSS) attacks.
CVE-2005-0342 1 Apple 2 Mac Os X, Mac Os X Server 2025-04-03 N/A
The Finder in Mac OS X and earlier allows local users to overwrite arbitrary files and gain privileges by creating a hard link from the .DS_Store file to an arbitrary file.
CVE-1999-0473 1 Andrew Tridgell 1 Rsync 2025-04-03 N/A
The rsync command before rsync 2.3.1 may inadvertently change the permissions of the client's working directory to the permissions of the directory being transferred.
CVE-2005-0346 1 Safenet 1 Softremote Vpn Client 2025-04-03 N/A
SafeNet SoftRemote VPN Client stores the VPN password (pre-shared key) in cleartext in memory of the IreIKE.exe process, which allows local users to gain sensitive information if they have access to that process.
CVE-2005-0347 1 Realnetworks 1 Realarcade 2025-04-03 N/A
Integer overflow in RealArcade 1.2.0.994 and earlier allows remote attackers to execute arbitrary code via an RGS file with an invalid size string for the GUID and game name, which leads to a buffer overflow.
CVE-2005-0348 1 Realnetworks 1 Realarcade 2025-04-03 N/A
Directory traversal vulnerability in RealArcade 1.2.0.994 allows remote attackers to delete arbitrary files via an RGP file with a .. (dot dot) in the FILENAME tag.
CVE-2005-0349 1 Broadcom 1 Brightstor Arcserve Backup 2025-04-03 N/A
The production release of the UniversalAgent for UNIX in BrightStor ARCserve Backup 11.1 contains hard-coded credentials, which allows remote attackers to access the file system and possibly execute arbitrary commands.
CVE-2005-0350 1 F-secure 4 F-secure Anti-virus, F-secure Internet Security, F-secure Personal Express and 1 more 2025-04-03 N/A
Heap-based buffer overflow in multiple F-Secure Anti-Virus and Internet Security products allows remote attackers to execute arbitrary code via a crafted ARJ archive.
CVE-2005-0352 1 Woodstone 1 Servers Alive 2025-04-03 N/A
Servers Alive 4.1 and 5.0, when running as a service, does not drop SYSTEM privileges before loading local manual under the help menu, which allows local users to gain privileges.
CVE-1999-0480 1 Midnight Commander 1 Midnight Commander 2025-04-03 N/A
Local attackers can conduct a denial of service in Midnight Commander 4.x with a symlink attack.
CVE-1999-0501 2025-04-03 N/A
A Unix account has a guessable password.
CVE-1999-0512 2025-04-03 N/A
A mail server is explicitly configured to allow SMTP mail relay, which allows abuse by spammers.