search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2002-09-24 2001-03-02 2003-11-05 VU#739211 PHP-Nuke does not adequately authenticate users thereby allowing attackers to change user information
2001-12-10 2001-05-29 2003-11-05 VU#403051 GnuPG format string vulnerability in do_get() in ttyio.c while prompting for a new filename
2003-11-05 2003-10-20 2003-11-05 VU#496340 Oracle command-line program buffer overflow in argument handling
2003-10-30 2001-09-01 2003-10-30 VU#246147 Morpheus discloses username to remote users
2003-10-30 2001-08-29 2003-10-30 VU#315227 KaZaA Media Desktop discloses username to remote users
2003-10-30 2001-08-07 2003-10-30 VU#293051 Avaya Argent Office uses weak SNMP authentication mechanism
2003-10-30 2001-08-07 2003-10-30 VU#822019 Avaya Argent Office requests 'HoldMusic' file from broadcast address via TFTP
2003-10-30 2001-08-07 2003-10-30 VU#742115 Avaya Argent Office uses weak authentication for TFTP-based administrative control
2003-10-30 2001-08-07 2003-10-30 VU#981915 Avaya Argent Office vulnerable to denial of service via malformed DNS packets
2001-09-07 2001-09-05 2003-10-30 VU#548515 Multiple intrusion detection systems may be circumvented via %u encoding
2003-10-29 2003-09-23 2003-10-29 VU#405348 ProFTPD fails to properly handle newline characters when transferring files in ASCII mode
2003-10-27 2001-07-26 2003-10-28 VU#399883 Linux groff utility pic contains format string vulnerability
2003-10-16 2003-10-15 2003-10-22 VU#422156 Microsoft Exchange Server fails to properly handle specially crafted SMTP extended verb requests
2003-10-16 2003-10-15 2003-10-22 VU#967668 Microsoft Windows ListBox and ComboBox controls vulnerable to buffer overflow when supplied crafted Windows message
2003-04-30 2003-01-03 2003-10-21 VU#944241 rpc.walld fails to properly validate messages before broadcasting to clients

Sponsored by CISA.