search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2002-06-13 2000-03-20 2002-06-13 VU#25716 Chunked encoding post can consume excessive memory on IIS 4.0 webserver
2007-05-03 2007-05-02 2008-07-21 VU#213516 LiveData Protocol Server fails to properly handle requests for WSDL files
2006-11-08 2006-11-08 2007-04-05 VU#495288 Mozilla products contain several unspecified errors in the layout engine
2001-07-18 2001-03-26 2002-05-20 VU#176888 Linux kernel contains race condition via ptrace/procfs/execve
2004-04-13 2004-04-13 2004-04-14 VU#740716 Microsoft Jet Database Engine database request handling buffer overflow
2004-10-13 2004-10-12 2004-10-15 VU#625616 Microsoft Internet Explorer does not properly handle navigations from plug-ins
2007-12-17 2007-12-11 2007-12-19 VU#120593 Meridian Prolog Manager uses weak authentication to store and transmit user credentials
2007-01-24 2007-01-24 2007-01-31 VU#341288 Cisco IOS fails to properly process certain packets containing a crafted IP option
2006-01-24 2006-01-17 2006-01-24 VU#629316 Oracle Database SYS.DBMS_METADATA_UTIL package SQL injection vulnerability
2005-10-11 2005-10-11 2005-12-15 VU#950516 Microsoft COM+ contains a memory management flaw
2007-04-03 2007-04-03 2007-05-16 VU#220816 MIT Kerberos 5 telnet daemon allows login as arbitrary user
2004-03-25 2004-03-22 2004-04-06 VU#740188 Ethereal IrDA dissector plugin fails to properly parse IRCOM_PORT_NAME parameter
2006-11-14 2006-08-28 2006-11-14 VU#813588 Microsoft DirectAnimation Path ActiveX control Spline method integer overflow
2001-07-27 2001-06-27 2001-07-27 VU#593571 SCO UnixWare uux contains buffer overflow via long string of characters sent as command line argument
2003-06-23 2003-05-07 2003-06-23 VU#317348 Cisco VPN 3000 Concentrator forces device to reload when processing malformed SSH initialization packet

Sponsored by CISA.