search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2002-10-28 2002-04-15 2002-10-28 VU#582923 webalizer vulnerable to buffer overflow when performing reverse DNS lookups
2002-10-29 2001-08-24 2002-10-29 VU#837419 Netegrity SiteMinder does not adequately validate user input thereby allowing user to bypass filters via crafted URL
2002-05-21 2002-05-21 2002-10-30 VU#341187 SSHD allows users to override "AllowedAuthentications" configuration thereby permitting users to provide any type of authentication
2002-10-24 2001-04-20 2002-11-07 VU#887393 Microsoft Windows 2000 SNMP service leaks memory when querying printer objects if spooler service is stopped
2002-09-03 2002-09-03 2002-11-14 VU#761651 Cisco VPN 3000 series concentrator does not properly handle malformed ISAKMP packets
2002-03-11 2002-01-10 2002-11-15 VU#307835 Oracle9i Application Server OWA_UTIL procedures expose sensitive information
2002-06-04 2002-05-27 2002-11-15 VU#291555 Oracle Web Cache contains buffer overflow vulnerabilities
2002-06-04 2002-05-27 2002-11-15 VU#997403 Oracle Reports Server Reports Web Cartridge (RWCGI60) vulnerable to buffer overflow via database name parameter
2001-11-19 2001-11-19 2002-11-15 VU#279763 RhinoSoft Serv-U remote administration client transmits password in plaintext
2002-11-19 2002-10-30 2002-11-19 VU#361065 The default NTFS permissions are not applied to a converted boot partition on Microsoft Windows 2000 and Windows XP systems when CONVERT.EXE is used
2002-10-29 2002-09-26 2002-11-19 VU#910713 Apache discloses source code via POST requests to a location with WebDAV and CGI enabled
2002-11-20 2002-11-20 2002-11-21 VU#181721 Alcatel Operating System (AOS) does not require a password for accessing the telnet server
2002-12-03 2002-12-03 2002-12-05 VU#740169 Cyrus IMAP Server contains a buffer overflow vulnerability
2002-12-05 2002-11-27 2002-12-06 VU#683673 Sun Solaris priocntl(2) does not adequately validate path to kernel modules that implement lightweight process (LWP) scheduling policy
2001-11-21 2001-11-20 2002-12-06 VU#913704 MandrakeSoft Mandrake Linux Apache default configuration enables directory indexing

Sponsored by CISA.