Show filters
90 Total Results
Displaying 71-80 of 90
Sort by:
Attacker Value
Unknown

CVE-2004-0905

Disclosure Date: September 14, 2004 (last updated February 22, 2025)
Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allows remote attackers to perform cross-domain scripting and possibly execute arbitrary code by convincing a user to drag and drop javascript: links to a frame or page in another domain.
0
Attacker Value
Unknown

CVE-2002-2185

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
The Internet Group Management Protocol (IGMP) allows local users to cause a denial of service via an IGMP membership report to a target's Ethernet address instead of the Multicast group address, which causes the target to stop sending reports to the router and effectively disconnect the group from the network.
0
Attacker Value
Unknown

CVE-2002-1285

Disclosure Date: November 29, 2002 (last updated February 22, 2025)
runlpr in the LPRng package allows the local lp user to gain root privileges via certain command line arguments.
0
Attacker Value
Unknown

CVE-2002-0768

Disclosure Date: August 12, 2002 (last updated February 22, 2025)
Buffer overflow in lukemftp FTP client in SuSE 6.4 through 8.0, and possibly other operating systems, allows a malicious FTP server to execute arbitrary code via a long PASV command.
0
Attacker Value
Unknown

CVE-2002-0083

Disclosure Date: March 15, 2002 (last updated February 22, 2025)
Off-by-one error in the channel code of OpenSSH 2.0 through 3.0.2 allows local users or remote malicious servers to gain privileges.
Attacker Value
Unknown

CVE-2002-0062

Disclosure Date: March 08, 2002 (last updated February 22, 2025)
Buffer overflow in ncurses 5.0, and the ncurses4 compatibility package as used in Red Hat Linux, allows local users to gain privileges, related to "routines for moving the physical cursor and scrolling."
0
Attacker Value
Unknown

CVE-2002-0004

Disclosure Date: February 27, 2002 (last updated February 22, 2025)
Heap corruption vulnerability in the "at" program allows local users to execute arbitrary code via a malformed execution time, which causes at to free the same memory twice.
0
Attacker Value
Unknown

CVE-2001-0869

Disclosure Date: December 21, 2001 (last updated February 22, 2025)
Format string vulnerability in the default logging callback function _sasl_syslog in common.c in Cyrus SASL library (cyrus-sasl) may allow remote attackers to execute arbitrary commands.
0
Attacker Value
Unknown

CVE-2001-0872

Disclosure Date: December 21, 2001 (last updated February 22, 2025)
OpenSSH 3.0.1 and earlier with UseLogin enabled does not properly cleanse critical environment variables such as LD_PRELOAD, which allows local users to gain root privileges.
0
Attacker Value
Unknown

CVE-2001-0851

Disclosure Date: December 06, 2001 (last updated February 22, 2025)
Linux kernel 2.0, 2.2 and 2.4 with syncookies enabled allows remote attackers to bypass firewall rules by brute force guessing the cookie.
0