Page 91 of 907 results (0.009 seconds)

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

31 Dec 2004 — The built-in web servers for multiple networking devices do not set the Secure attribute for sensitive cookies in HTTPS sessions, which could cause the user agent to send those cookies in plaintext over an HTTP session with the same server. • http://www.kb.cert.org/vuls/id/546483 •

CVSS: 8.8EPSS: 8%CPEs: 68EXPL: 0

21 Dec 2004 — Integer overflow in the TIFFFetchStripThing function in tif_dirread.c for libtiff 3.6.1 allows remote attackers to execute arbitrary code via a TIFF file with the STRIPOFFSETS flag and a large number of strips, which causes a zero byte buffer to be allocated and leads to a heap-based buffer overflow. • http://lists.apple.com/archives/security-announce/2005/May/msg00001.html •

CVSS: 9.1EPSS: 2%CPEs: 1EXPL: 1

24 May 2001 — TCP implementations that use random increments for initial sequence numbers (ISN) can allow remote attackers to perform session hijacking or disruption by injecting a flood of packets with a range of ISN values, one of which may match the expected ISN. • https://www.exploit-db.com/exploits/19522 •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

08 Nov 1999 — bigconf.conf in F5 BIG/ip 2.1.2 and earlier allows remote attackers to read arbitrary files by specifying the target file in the "file" parameter. • http://marc.info/?l=bugtraq&m=94217006208374&w=2 •

CVSS: 9.8EPSS: 19%CPEs: 1EXPL: 0

01 Jan 1999 — The RPC portmapper service is running. • https://www.cve.org/CVERecord?id=CVE-1999-0632 •

CVSS: 10.0EPSS: 1%CPEs: 1EXPL: 0

01 Jan 1999 — A system-critical program or library does not have the appropriate patch, hotfix, or service pack installed, or is outdated or obsolete. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0662 •

CVSS: 9.8EPSS: 97%CPEs: 1EXPL: 2

01 Jul 1997 — A DNS server allows zone transfers. • https://github.com/websecnl/Bulk_CVE-1999-0532_Scanner •