search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2001-06-22 2001-05-08 2002-12-16 VU#795707 ScreamingMedia SITEware does not adequately validate user input thereby allowing arbitrary file disclosure via directory traversal
2007-01-09 2006-12-19 2007-06-04 VU#427972 Mozilla denial of service vulnerability
2001-10-01 2001-01-10 2001-11-08 VU#396272 mgetty creates temporary files insecurely
2001-10-12 2001-10-01 2001-10-31 VU#639507 Cisco PIX Firewall Manager stores enable password in plain text
2002-09-18 2002-01-09 2002-09-18 VU#250107 Mike Spice's Vote does not adequately validate user input
2002-08-01 2002-01-09 2002-08-01 VU#181907 Directory-traversal vulnerability in Mike Spice's My Classifieds CGI script
2002-10-11 2002-09-09 2003-08-13 VU#140898 Microsoft Java implementation allows execution of malicious code
2002-02-27 2002-01-10 2002-03-05 VU#936507 Oracle 9iAS allows access to CGI script source code within CGI-BIN directory
2001-05-09 2000-08-02 2001-05-10 VU#31607 Microsoft Windows 2000 Service Control Manager creates predictably named pipes
2006-04-19 2006-04-19 2006-05-05 VU#621566 Linksys RT31P2 VoIP router denial of service vulnerabilities
2002-09-13 2002-08-30 2002-09-13 VU#846307 HP Tru64 UNIX "dxsysinfo" contains buffer overflow (SSRT2275)
2002-07-11 2002-07-10 2002-07-11 VU#821139 Network Associates PGP Outlook Plug-in contains buffer overflow in decoding mechanism
2005-04-01 2005-03-28 2005-07-28 VU#341908 Multiple Telnet Clients vulnerable to buffer overflow via the env_opt_add() function in telnet.c
2003-04-04 2003-04-04 2003-06-27 VU#720017 Entrust Authority Security Manager (EASM) does not enforce multiple authorization requirement for master user password change
2005-01-05 2004-12-17 2005-01-05 VU#697598 Symantec Brightmail Anti-Spam Spamhunter UTF encoding error

Sponsored by CISA.