Page 12 of 134 results (0.004 seconds)

CVSS: 7.5EPSS: 3%CPEs: 39EXPL: 0

16 Jul 2001 — slapd in OpenLDAP 1.x before 1.2.12, and 2.x before 2.0.8, allows remote attackers to cause a denial of service (crash) via an invalid Basic Encoding Rules (BER) length field. • http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000417 •

CVSS: 7.5EPSS: 0%CPEs: 2EXPL: 0

02 Jul 2001 — Vulnerability in exuberant-ctags before 3.2.4-0.1 insecurely creates temporary files. • http://www.osvdb.org/5642 •

CVSS: 9.8EPSS: 1%CPEs: 9EXPL: 0

24 May 2001 — Buffer overflow in (1) wrapping and (2) unwrapping functions of slrn news reader before 0.9.7.0 allows remote attackers to execute arbitrary commands via a long message header. • http://archives.neohapsis.com/archives/freebsd/2001-04/0610.html •

CVSS: 5.5EPSS: 0%CPEs: 3EXPL: 0

14 Feb 2001 — htpasswd and htdigest in Apache 2.0a9, 1.3.14, and others allows local users to overwrite arbitrary files via a symlink attack. • http://marc.info/?l=bugtraq&m=97916374410647&w=2 • CWE-59: Improper Link Resolution Before File Access ('Link Following') •

CVSS: 10.0EPSS: 0%CPEs: 74EXPL: 13

14 Nov 2000 — Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen. • https://www.exploit-db.com/exploits/249 • CWE-264: Permissions, Privileges, and Access Controls •

CVSS: 7.8EPSS: 0%CPEs: 12EXPL: 0

21 Jun 2000 — Buffer overflow in kon program in Kanji on Console (KON) package on Linux may allow local users to gain root privileges via a long -StartupMessage parameter. • http://www.securityfocus.com/bid/1371 •

CVSS: 7.8EPSS: 0%CPEs: 12EXPL: 1

21 Jun 2000 — Buffer overflow in fld program in Kanji on Console (KON) package on Linux may allow local users to gain root privileges via an input file containing long CHARSET_REGISTRY or CHARSET_ENCODING settings. • https://www.exploit-db.com/exploits/20024 •

CVSS: 7.8EPSS: 0%CPEs: 14EXPL: 1

22 Mar 2000 — gpm-root in the gpm package does not properly drop privileges, which allows local users to gain privileges by starting a utility from gpm-root. • https://www.exploit-db.com/exploits/19816 •

CVSS: 7.8EPSS: 0%CPEs: 5EXPL: 0

02 Feb 2000 — The default installation of Debian GNU/Linux uses an insecure Master Boot Record (MBR) which allows a local user to boot from a floppy disk during the installation. • http://marc.info/?l=bugtraq&m=94973075614088&w=2 •

CVSS: 5.5EPSS: 1%CPEs: 8EXPL: 1

08 Dec 1999 — The ping command in Linux 2.0.3x allows local users to cause a denial of service by sending large packets with the -R (record route) option. • https://www.exploit-db.com/exploits/19675 •