search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2002-06-04 2002-05-27 2002-06-13 VU#630091 Oracle9i Database TNS Listener vulnerable to buffer overflow via SERVICE_NAME parameter
2001-12-21 2001-12-19 2001-12-21 VU#249491 IBM AIX login fails to adequately authenticate user when configured to use loadable authentication modules
2002-09-18 2002-01-10 2002-09-18 VU#806091 Mike Spice's My Calendar does not adequately validate user input
2002-07-30 2002-07-30 2002-09-30 VU#308891 OpenSSL contains multiple buffer overflows in buffers that are used to hold ASCII representations of integers
2011-08-29 2011-08-29 2011-10-19 VU#213486 LifeSize Room appliance authentication bypass and arbitrary code injection vulnerability
2006-11-29 2006-11-28 2006-11-30 VU#258744 Apple Mac OS X Finder fails to properly handle malformed .DS_Store files
2006-05-30 2006-05-30 2006-06-07 VU#397417 Secure Elements Class 5 AVR server fails to properly enforce access controls on console operations
2002-04-10 2002-04-10 2002-06-13 VU#610291 Microsoft Internet Information Server (IIS) 4.0 and 5.0 buffer overflow in chunked encoding transfer mechanism for ASP
2001-10-10 2001-10-09 2001-10-11 VU#139491 Cisco IOS vulnerable to denial of service via Cisco Discovery Protocol
2010-10-12 2010-01-06 2010-11-30 VU#538191 Ghostscript crashes when passing a null ipsp->ip value to the gs_type2_interpret function
2002-08-09 2002-04-03 2002-12-10 VU#128491 Macromedia Flash Player continues to download flash files until browser is closed
2001-12-13 1998-03-01 2001-12-18 VU#228186 Hot Standby Router Protocol (HSRP) uses weak authentication
2003-03-20 2003-03-15 2003-05-09 VU#623217 Cryptographic weakness in Kerberos Version 4 protocol
2003-04-04 2003-04-04 2003-06-27 VU#720017 Entrust Authority Security Manager (EASM) does not enforce multiple authorization requirement for master user password change
2002-10-11 2002-06-12 2003-08-05 VU#879386 Multiple buffer overflow vulnerabilities in QNX

Sponsored by CISA.