Show filters
12 Total Results
Displaying 1-10 of 12
Sort by:
Attacker Value
Unknown
CVE-2015-7556
Disclosure Date: January 15, 2020 (last updated February 21, 2025)
DeleGate 9.9.13 allows local users to gain privileges as demonstrated by the dgcpnod setuid program.
0
Attacker Value
Unknown
CVE-2009-1357
Disclosure Date: April 23, 2009 (last updated October 04, 2023)
CRLF injection vulnerability in da/DA/Login in Sun Java System Delegated Administrator 6.2 through 6.4 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the HELP_PAGE parameter.
0
Attacker Value
Unknown
CVE-2006-2072
Disclosure Date: April 27, 2006 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in DeleGate 9.x before 9.0.6 and 8.x before 8.11.6 allow remote attackers to cause a denial of service via crafted DNS responses messages that cause (1) a buffer over-read or (2) infinite recursion, which can trigger a segmentation fault or invalid memory access, as demonstrated by the OUSPG PROTOS DNS test suite.
0
Attacker Value
Unknown
CVE-2005-0036
Disclosure Date: December 31, 2005 (last updated February 22, 2025)
The DNS implementation in DeleGate 8.10.2 and earlier allows remote attackers to cause a denial of service via a compressed DNS packet with a label length byte with an incorrect offset, which could trigger an infinite loop.
0
Attacker Value
Unknown
CVE-2005-4045
Disclosure Date: December 07, 2005 (last updated October 04, 2023)
Unspecified vulnerability in System Communications Services 6 Delegated Administrator 2005Q1 in Sun Java System Messaging Server 2005Q1 allows remote attackers to obtain the Top-Level Administrator (TLA) default password via unknown vectors, possibly involving configure_toplevel_admin.ldif.
0
Attacker Value
Unknown
CVE-2005-0861
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Multiple buffer overflows in DeleGate before 8.11.1 may allow attackers to cause a denial of service or execute arbitrary code, possibly due to "overflows on arrays."
0
Attacker Value
Unknown
CVE-2004-0789
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Multiple implementations of the DNS protocol, including (1) Poslib 1.0.2-1 and earlier as used by Posadis, (2) Axis Network products before firmware 3.13, and (3) Men & Mice Suite 2.2x before 2.2.3 and 3.5.x before 3.5.2, allow remote attackers to cause a denial of service (CPU and network bandwidth consumption) by triggering a communications loop via (a) DNS query packets with localhost as a spoofed source address, or (b) a response packet that triggers a response packet.
0
Attacker Value
Unknown
CVE-2004-2003
Disclosure Date: May 06, 2004 (last updated February 22, 2025)
Buffer overflow in the ssl_prcert function in the SSLway filter (sslway.c) for DeleGate 8.9.2 and earlier allows remote attackers to execute arbitrary code via a certificate with a long (1) subject or (2) issuer name field.
0
Attacker Value
Unknown
CVE-2002-1781
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Multiple buffer overflows in DeleGate 7.7.0 through 7.8.1 allow remote attackers to execute arbitrary code, as demonstrated using a long USER command to the POP proxy.
0
Attacker Value
Unknown
CVE-2001-1202
Disclosure Date: December 28, 2001 (last updated February 22, 2025)
Cross-site scripting vulnerability in DeleGate 7.7.0 and 7.7.1 does not quote scripting commands within a "403 Forbidden" error page, which allows remote attackers to execute arbitrary Javascript on other clients via a URL that generates an error.
0