CVE Database
Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update
| CVE ID | Score | Description |
|---|---|---|
| 1mo ago | 2.1 | NetBSD netstat command allows local users to access kernel memory. |
| 1mo ago | 2.6 | Internet Explorer 4 allows remote attackers (malicious web site operators) to read the contents of the clipboard via the Internet WebBrowser ActiveX object. |
| 1mo ago | 2.1 | Denial of service in Linux 2.0.36 allows local users to prevent any server from listening on any non-privileged port. |
| 1mo ago | 2.1 | When IIS 2 or 3 is upgraded to IIS 4, ism.dll is inadvertently left in /scripts/iisadmin, which does not restrict access to the local machine and allows an unauthorized user to gain access to sensitive server information, including the Administrator's password. |
| 1mo ago | 2.1 | Solaris ff.core allows local users to modify files. |
| 1mo ago | 2.1 | L0phtcrack 2.5 used temporary files in the system TEMP directory which could contain password information. |
| 1mo ago | 2.1 | Local users can perform a denial of service in Tripwire 1.2 and earlier using long filenames. |
| 1mo ago | 2.1 | PIM software for Royal daVinci does not properly password-protext access to data stored in the .mdb (Microsoft Access) file, which allows local users to read the data without a password by directly accessing the files with a different application, such as Access. |
| 1mo ago | 0 | WinGate is being used. |
| 1mo ago | 0 | The UUCP service is running. |
| 1mo ago | 0 | The chargen service is running. |
| 1mo ago | 0 | The daytime service is running. |
| 1mo ago | 0 | The systat service is running. |
| 1mo ago | 0 | The echo service is running. |
| 1mo ago | 0 | The ident/identd service is running. |
| 1mo ago | 0 | The rpc.rquotad service is running. |
| 1mo ago | 0 | The rstat/rstatd service is running. |
| 1mo ago | 0 | The rpc.sprayd service is running. |
| 1mo ago | 0 | A network service is running on a nonstandard port. |
| 1mo ago | 0 | ICMP echo (ping) is allowed from arbitrary hosts. |
| 1mo ago | 0 | Anonymous FTP is enabled. |
| 1mo ago | 3.7 | A race condition in Linux 2.2.1 allows local users to read arbitrary memory from /proc files. |
| 1mo ago | 2.1 | Linux 2.1.132 and earlier allows local users to cause a denial of service (resource exhaustion) by reading a large buffer from a random device (e.g. /dev/urandom), which cannot be interrupted until the read has completed. |
| 1mo ago | 2.1 | Corel Word Perfect 8 for Linux creates a temporary working directory with world-writable permissions, which allows local users to (1) modify Word Perfect behavior by modifying files in the working directory, or (2) modify files of other users via a symlink attack. |
| 1mo ago | 2.6 | Internet Explorer 3.x to 4.01 allows a remote attacker to insert malicious content into a frame of another web site, aka frame spoofing. |
| 1mo ago | 2.1 | KDE kppp allows local users to create a directory in an arbitrary location via the HOME environmental variable. |
| 1mo ago | 2.6 | Internet Explorer 4.01 allows remote attackers to read arbitrary files by pasting a file name into the file upload control, aka untrusted scripted paste. |
| 1mo ago | 2.6 | Internet Explorer 4.0 and 4.01 allow a remote attacker to read files via IE's cross frame security, aka the "Cross Frame Navigate" vulnerability. |
| 1mo ago | 3.5 | Attackers can crash a Cisco IOS router or device, provided they can get to an interactive prompt (such as a login). This applies to some IOS 9.x, 10.x, and 11.x releases. |
| 1mo ago | 2.1 | dumpreg in Red Hat Linux 5.1 opens /dev/mem with O_RDWR access, which allows local users to cause a denial of service (crash) by redirecting fd 1 (stdout) to the kernel. |