search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2008-02-20 2007-12-10 2008-02-25 VU#438395 Samba "send_mailslot()" function buffer overflow
2002-09-24 2001-12-01 2002-09-24 VU#597795 Easynews does not adequately validate user input thereby disclosing server installation path via crafted URL request
2001-12-07 2001-09-27 2001-12-10 VU#905795 OpenSSH fails to properly apply source IP based access control restrictions
2002-01-14 2002-01-09 2002-01-14 VU#855195 Cisco SN 5420 Storage Router vulnerable to DoS via fragmented packet sent over Gigabit interface
2008-02-29 2008-02-29 2008-02-29 VU#524857 Learn2 STRunner ActiveX control stack buffer overflows
2001-08-17 2001-07-02 2001-08-17 VU#672683 Apache Tomcat vulnerable to Cross-Site Scripting via passing of user input directly to default error page
2003-05-05 2003-04-24 2004-02-23 VU#443257 Cisco Catalyst switches allow access to "enable mode" without password
2007-04-10 2007-04-10 2007-04-11 VU#728057 Microsoft Windows Agent fails to properly process crafted URLs
2011-01-27 2011-01-26 2011-01-28 VU#686084 ISC DHCP server DHCPv6 decline message processing vulnerability
2002-01-04 2002-01-02 2002-07-05 VU#877811 Buffer overflow vulnerability in pwck command line utility
2005-03-09 2004-11-08 2005-08-01 VU#448384 ISC DHCP contains a format string vulnerabilty in errwarn.c
2002-08-05 2001-12-17 2003-04-11 VU#157795 Magic Enterprise contains multiple shell scripts that allow arbitrary file overwriting via symlink redirection of temporary file
2001-09-18 2001-08-15 2001-09-18 VU#959211 Microsoft IIS vulnerable to DoS via invalid request for very long WebDAV requests
2002-06-05 2002-02-21 2002-10-24 VU#887319 Yahoo! Messenger contains buffer overflow in "IMvironment" field
2007-05-09 2007-05-08 2007-05-09 VU#555489 Microsoft Word fails to properly parse crafted rich text content

Sponsored by CISA.