This reference map lists the various references for FULLDISC and
provides the associated CVE entries or candidates. It uses data from
CVE version 20061101 and candidates that were active as of
2013-05-22.
Note that the list of references may not be complete.
| FULLDISC:20020717 TheServer cleartext password sillyness. |
CVE-2002-2389
|
| FULLDISC:20020719 Vulnerability found: Adobe Acrobat eBook Reader and Content Server |
CVE-2002-1016
|
| FULLDISC:20020720 Netscape Communicator META Refresh Denial of Service |
CVE-2002-2308
|
| FULLDISC:20020720 PHP Resource Exhaustion Denial of Service |
CVE-2002-2309
|
| FULLDISC:20020724 REFRESH: EUDORA MAIL 5.1.1 |
CVE-2002-2313
|
| FULLDISC:20020808 Cross-Site Scripting Issues in Falcon Web Server |
CVE-2002-2318
|
| FULLDISC:20020829 RPM verification |
CVE-2002-2204
|
| FULLDISC:20020903 Check Point statement on use of IKE Aggressive Mode |
CVE-2002-1623
|
| FULLDISC:20020917 Trillian .74 and below, ident flaw. |
CVE-2002-2390
|
| FULLDISC:20020919 iDEFENSE OSF1/Tru64 3.x vuln clarification |
CVE-2000-1031
CVE-2002-1604
CVE-2002-1605
CVE-2002-1614
CVE-2002-1616
CVE-2002-1617
|
| FULLDISC:20020920 Alsasound local b0f (not an issue if not setuid root) |
CVE-2002-1896
|
| FULLDISC:20020927 Buffer Overrun in SmartHTML Interpreter Could Allow Code Executio n (Q324096) |
CVE-2002-0692
|
| FULLDISC:20021021 kmMail XSS |
CVE-2002-1958
|
| FULLDISC:20021120 Opera 6.03/Linux crashes on HTTPS over Squid Proxy on a site |
CVE-2002-2414
|
| FULLDISC:20021124 BadBlue XSS/Information Disclosure Vulnerabilities |
CVE-2002-2289
|
| FULLDISC:20021130 Multiple pServ Remote Buffer Overflow Vulnerabilities |
CVE-2002-2295
|
| FULLDISC:20021213 Some vim problems, yet still vim much better than windows |
CVE-2002-1377
|
| FULLDISC:20030107 CuteFTP 5.0 XP, Buffer Overflow |
CVE-2003-1260
|
| FULLDISC:20030120 Advisory 01/2003: CVS remote vulnerability |
CVE-2003-0015
|
| FULLDISC:20030217 [argv] BitchX-353 Vulnerability |
CVE-2003-1450
|
| FULLDISC:20030218 Re: CSSA-2003-007.0 Advisory withdrawn. |
CVE-2002-0842
|
| FULLDISC:20030223 GOnicus System Administrator php injection |
CVE-2003-1412
|
| FULLDISC:20030223 moxftp arbitrary code execution poc/advisory |
CVE-2003-0203
|
| FULLDISC:20030302 [SCSA-008] Cross Site Scripting & Script Injection Vulnerability in PY-Livredor |
CVE-2003-1384
|
| FULLDISC:20030304 SAP R/3, account locking and RFC SDK |
CVE-2003-1035
|
| FULLDISC:20030308 Ethereal format string bug, yet still ethereal much better than windows |
CVE-2003-0081
|
| FULLDISC:20030324 Vulnerability (critical): Digital signature for Adobe Acrobat/Reader plug-in can be forged |
CVE-2002-0030
|
| FULLDISC:20030329 Sendmail: -1 gone wild |
CVE-2003-0161
|
| FULLDISC:20030406 Seti@home information leakage and remote compromise |
CVE-2003-1118
|
| FULLDISC:20030413 Misuse of Macromedia Flash Ads clickTAG Option May Lead to Privacy Breach |
CVE-2003-0208
|
| FULLDISC:20030416 [VulnWatch] Apache mod_access_referer denial of service issue |
CVE-2003-1054
|
| FULLDISC:20030422 UDP bypassing in Kerio Firewall 2.1.4 |
CVE-2003-1491
|
| FULLDISC:20030430 OpenSSH/PAM timing attack allows remote users identification |
CVE-2003-0190
|
| FULLDISC:20030506 youbin local root exploit + advisory |
CVE-2003-0269
|
| FULLDISC:20030509 ltris-and-slashem-tty possible trouble |
CVE-2003-1473
CVE-2003-1474
|
| FULLDISC:20030510 [forward]Apple Safari and Konqueror Embedded Common Name Verification Vulnerability |
CVE-2003-0370
|
| FULLDISC:20030519 emacs 21.3 fixes security bugs |
CVE-2003-1232
|
| FULLDISC:20030610 mnogosearch 3.1.20 and 3.2.10 buffer overflow |
CVE-2003-0436
CVE-2003-0437
|
| FULLDISC:20030612 libmysqlclient 4.x and below mysql_real_connect() buffer overflow. |
CVE-2003-1331
|
| FULLDISC:20030613 -10Day CERT Advisory on PDF Files |
CVE-2003-0434
|
| FULLDISC:20030617 Cross-Site Scripting in Unparsable XML Files (GM#013-IE) |
CVE-2003-0446
|
| FULLDISC:20030617 Script Injection to Custom HTTP Errors in Local Zone (GM#014-IE) |
CVE-2003-0447
|
| FULLDISC:20030618 SQL Inject in ProFTPD login against Postgresql using mod_sql |
CVE-2003-0500
|
| FULLDISC:20030622 Symantec ActiveX control buffer overflow |
CVE-2003-0470
|
| FULLDISC:20030625 Re: Internet Explorer >=5.0 : Buffer overflow |
CVE-2003-0469
|
| FULLDISC:20030701 PoC for Internet Explorer >=5.0 buffer overflow (trivial exploit for hard case). |
CVE-2003-0469
|
| FULLDISC:20030704 Essentia Web Server 2.12 (Linux) |
CVE-2002-0313
|
| FULLDISC:20030705 [Vulnerability] : ProductCart database file can be downloaded remotely |
CVE-2003-1304
|
| FULLDISC:20030707 Internet Explorer 6 DoS Bug |
CVE-2003-0519
|
| FULLDISC:20030708 Fwd: xbl vulnerabilty |
CVE-2003-0535
|
| FULLDISC:20030709 IE Object Type Overflow Exploit |
CVE-2003-0344
|
| FULLDISC:20030711 Trend Micro ActiveX Multiple Overflows |
CVE-2003-0646
|
| FULLDISC:20030712 DoS - Polycom MGC 25 Control Port |
CVE-2003-0556
|
| FULLDISC:20030714 [sec-labs] Remote Denial of Service vulnerability in NeoModus Direct Connect 1.0 build 9 |
CVE-2003-0554
|
| FULLDISC:20030718 (no subject) |
CVE-2003-0567
|
| FULLDISC:20030720 CGI.pm vulnerable to Cross-site Scripting. |
CVE-2003-0615
|
| FULLDISC:20030721 Microsoft Windows 2000 RPC DCOM Interface DOS AND Privilege Escalation Vulnerability |
CVE-2003-0605
|
| FULLDISC:20030726 Re: The French BUGTRAQ (New Win RPC Exploit) |
CVE-2003-0352
|
| FULLDISC:20030729 KDE Security Advisory: Konqueror Referrer Authentication Leak |
CVE-2003-0459
|
| FULLDISC:20030730 rpcdcom Universal offsets |
CVE-2003-0352
|
| FULLDISC:20030804 Postfix 1.1.12 remote DoS / Postfix 1.1.11 bounce scanning |
CVE-2003-0540
|
| FULLDISC:20030902 New Microsoft Internet Explorer mshtml.dll Denial of Service? |
CVE-2003-1048
|
| FULLDISC:20030907 BAD NEWS: Microsoft Security Bulletin MS03-032 |
CVE-2003-0838
|
| FULLDISC:20030910 Buffer overflow in MySQL |
CVE-2003-0780
|
| FULLDISC:20030911 Pine: .procmailrc rule against integer overflow |
CVE-2003-0721
|
| FULLDISC:20030915 new ssh exploit? |
CVE-2003-0693
|
| FULLDISC:20030915 openssh remote exploit |
CVE-2003-0693
|
| FULLDISC:20030916 The lowdown on SSH vulnerability |
CVE-2003-0693
|
| FULLDISC:20030917 Sendmail 8.12.9 prescan bug (a new one) [CAN-2003-0694] |
CVE-2003-0694
|
| FULLDISC:20030919 lsh patch (was Re: [Full-Disclosure] new ssh exploit?) |
CVE-2003-0826
|
| FULLDISC:20030924 [OpenPKG-SA-2003.042] OpenPKG Security Advisory (openssh) |
CVE-2003-0786
CVE-2003-0787
|
| FULLDISC:20030929 [OpenSSL Advisory] Vulnerabilities in ASN.1 parsing |
CVE-2003-0543
CVE-2003-0544
CVE-2003-0545
|
| FULLDISC:20031008 ltrace bug |
CVE-2004-0172
|
| FULLDISC:20031010 Re : [VERY] BAD news on RPC DCOM Exploit |
CVE-2003-0813
|
| FULLDISC:20031010 Re: Bad news on RPC DCOM vulnerability |
CVE-2003-0813
|
| FULLDISC:20031011 Bad news on RPC DCOM2 vulnerability |
CVE-2003-0813
|
| FULLDISC:20031014 Another ProFTPd root EXPLOIT ? |
CVE-2003-0831
|
| FULLDISC:20031015 Mod-Throttle [was: client attacks server - XSS] |
CVE-2003-1502
|
| FULLDISC:20031016 Microsoft Local Troubleshooter ActiveX control buffer overflow |
CVE-2003-0662
|
| FULLDISC:20031019 ByteHoard Directory Traversal Vulnerability |
CVE-2003-1499
|
| FULLDISC:20031019 Caucho Resin 2.x - Cross Site Scripting |
CVE-2003-1513
|
| FULLDISC:20031022 Fun with /bin/ls, yet still ls better than windows |
CVE-2003-0853
CVE-2003-0854
|
| FULLDISC:20031022 Sylpheed-claws format string bug, yet still sylpheed much better than windows |
CVE-2003-0852
|
| FULLDISC:20031024 Vulnerability in MERCUR Mail Server v4.2 SP3 and below |
CVE-2003-1177
|
| FULLDISC:20031026 Java 1.4.2_02 InsecurityManager JVM crash |
CVE-2003-1134
|
| FULLDISC:20031027 Bytehoard File Disclosure VUlnerability Sequel |
CVE-2003-1153
|
| FULLDISC:20031028 STG Security Advisory: [SSA-20031025-05] InfronTech WebTide 7.04 Directory and File Disclosure Vulnerability |
CVE-2003-1152
|
| FULLDISC:20031031 XSS In mldonkey - But.... |
CVE-2003-1164
|
| FULLDISC:20031101 DATEV Nutzungskontrolle Bypassing (REG) |
CVE-2003-1169
|
| FULLDISC:20031102 [bWM#017] Cross-Site-Scripting @ PHPKIT |
CVE-2003-1187
|
| FULLDISC:20031103 Corsaire Security Advisory: PeopleSoft PeopleBooks Search CGI multiple argument issues |
CVE-2003-0626
CVE-2003-0627
|
| FULLDISC:20031103 Liteserve Buffer Overflow in Handling Server's Log |
CVE-2003-1144
|
| FULLDISC:20031104 OpenBSD kernel overflow, yet still *BSD much better than windows |
CVE-2003-0955
|
| FULLDISC:20031123 Thomnson TCM315 Denial of service |
CVE-2003-1085
|
| FULLDISC:20031123 VieNuke VieBoard SQL Injection Vulnerability... again |
CVE-2003-1195
|
| FULLDISC:20031124 Thomnson TCM315 Denial of service |
CVE-2003-1085
|
| FULLDISC:20040105 firewall security bug? |
CVE-2004-1799
|
| FULLDISC:20040108 Yahoo Instant Messenger Long Filename Downloading Buffer Overflow |
CVE-2004-0043
|
| FULLDISC:20040109 Directory Traversal in Accipiter Direct Server 6.0 |
CVE-2004-0072
|
| FULLDISC:20040112 SRT2004-01-9-1022 - Symantec LiveUpdate allows local users to become SYSTEM |
CVE-2003-0994
|
| FULLDISC:20040118 Proof-Of-Concept Denial-Of-Service Pointbase 4.6 Java SQL-DB |
CVE-2003-1573
|
| FULLDISC:20040123 Finjan SurfinGate Vulnerability |
CVE-2004-2107
|
| FULLDISC:20040126 Advisory 01/2004: 12 x Gaim remote overflows |
CVE-2004-0005
CVE-2004-0006
CVE-2004-0007
CVE-2004-0008
|
| FULLDISC:20040128 Dotnetnuke Multiple Vulnerabilities |
CVE-2004-2323
CVE-2004-2324
CVE-2004-2325
|
| FULLDISC:20040201 Proofpoint Protection Server remote MySQL root user vulnerability |
CVE-2004-2357
|
| FULLDISC:20040202 0verkill - little simple vulnerability. |
CVE-2004-0238
|
| FULLDISC:20040204 Remote openbsd crash with ip6, yet still openbsd much better than windows |
CVE-2004-0257
|
| FULLDISC:20040206 CactuSoft CactuShop 5.0 Lite shopping cart software backdoor |
CVE-2004-0260
|
| FULLDISC:20040206 Open Journal Blog Authenticaion Bypassing Vulnerability |
CVE-2004-0261
|
| FULLDISC:20040206 [apache-ssl] Apache-SSL security advisory - apache_1.3.28+ssl_1.52 and prior |
CVE-2004-0009
|
| FULLDISC:20040207 (no subject) |
CVE-2004-2090
|
| FULLDISC:20040207 DreamFTP Server 1.02 Buffer Overflow |
CVE-2004-0277
|
| FULLDISC:20040208 TrackMania Demo Denial of Service |
CVE-2004-2077
|
| FULLDISC:20040209 Red-M Red-Alert Multiple Vulnerabilities |
CVE-2004-2078
CVE-2004-2079
CVE-2004-2080
|
| FULLDISC:20040210 Re: HelpCtr - allow open any page or run |
CVE-2004-0474
|
| FULLDISC:20040210 XBOX EvolutionX ftp 'cd' command and telnet 'dir' buffer overflow |
CVE-2004-0268
|
| FULLDISC:20040213 Re: HelpCtr - allow open any page or run |
CVE-2004-0474
|
| FULLDISC:20040215 GAYER THAN AIDS ADVISORY #01: IE 5 remote code execution |
CVE-2004-0566
|
| FULLDISC:20040216 EarlyImpact ProductCart shopping cart software multiple security vulnerabilities |
CVE-2004-2172
CVE-2004-2173
CVE-2004-2174
|
| FULLDISC:20040216 Symantec FireWall/VPN Appliance model 200 leak of security |
CVE-2004-0190
|
| FULLDISC:20040218 Second critical mremap() bug found in all Linux kernels |
CVE-2004-0077
|
| FULLDISC:20040222 GateKeeper Pro 4.7 buffer overflow |
CVE-2004-0326
|
| FULLDISC:20040223 Re: [Full-Disclosure] Proofpoint Protection Server remote MySQL root user vulnerability |
CVE-2004-2357
|
| FULLDISC:20040223 Re: [SECURITY] [DSA 447-1] New hsftp packages fix format string vulnerability |
CVE-2004-0159
|
| FULLDISC:20040224 Advisory 02/2004: Trillian remote overflows |
CVE-2004-2304
CVE-2004-2370
|
| FULLDISC:20040224 STG Security Advisory: [SSA-20040217-06] Apache for cygwin directory traversal vulnerability |
CVE-2004-0173
|
| FULLDISC:20040226 PerfectNav Crashes IE |
CVE-2004-2382
|
| FULLDISC:20040301 Nortel Networks Wireless LAN Access Point 2200 DoS + PoC |
CVE-2004-2549
|
| FULLDISC:20040301 Smashing "XBoard 4.2.7(All versions)" For Fun & Profit.*Unpublished Local Stack Overflow Vulnerablity! |
CVE-2004-2552
|
| FULLDISC:20040302 03-02-04 XSS Bug in NetScreen-SA 5000 Series of SSL VPN appliance |
CVE-2004-0347
|
| FULLDISC:20040303 Adobe Acrobat Reader XML Forms Data Format Buffer Overflow |
CVE-2004-0194
|
| FULLDISC:20040303 Spider Sales shopping cart software multiple security vulnerabilities |
CVE-2004-0350
CVE-2004-0351
|
| FULLDISC:2004031 CactuSoft CactuShop v5.x shopping cart software multiple security vulnerabilities |
CVE-2004-1882
|
| FULLDISC:20040310 Corsaire Security Advisory: Multiple vendor HTTP user agent cookie path traversal issue |
CVE-2003-0513
CVE-2003-0514
CVE-2003-0592
CVE-2003-0593
CVE-2003-0594
|
| FULLDISC:20040322 AIX 4.3.3 has make sgid 0? |
CVE-2004-2312
|
| FULLDISC:20040323 Dark Age of Camelot login client vulnerability to man in the middle attack |
CVE-2004-1855
|
| FULLDISC:20040323 Re: AIX 4.3.3 has make sgid 0? |
CVE-2004-2312
|
| FULLDISC:20040326 Nessus stores credentials in plain text |
CVE-2004-2722
|
| FULLDISC:20040327 NessusWX stores credentials in plain text |
CVE-2004-2723
|
| FULLDISC:20040402 Buffer Overflow in HAHTsite Scenario Server 5.1 |
CVE-2004-1763
|
| FULLDISC:20040404 Texutil symlink vulnerability. |
CVE-2004-1894
|
| FULLDISC:20040405 iDEFENSE Security Advisory 04.05.04: Perl win32_stat Function |
CVE-2004-0377
|
| FULLDISC:20040407 Mcafee FreeScan - Remote Buffer Overflow and Private Information Disclosure |
CVE-2004-1906
CVE-2004-1908
|
| FULLDISC:20040407 Race conditions in security dialogs |
CVE-2004-0762
CVE-2004-2659
CVE-2006-2094
|
| FULLDISC:20040407 Solaris vfs_getvfssw() local kernel exploit |
CVE-2004-2686
|
| FULLDISC:20040407 Symantec, McAfee and Panda ActiveX controls |
CVE-2004-1906
CVE-2004-1908
CVE-2004-1910
|
| FULLDISC:20040413 EEYE: Windows Expand-Down Data Segment Local Privilege Escalation |
CVE-2003-0910
|
| FULLDISC:20040413 EEYE: Windows Local Security Authority Service Remote Buffer Overflow |
CVE-2003-0533
|
| FULLDISC:20040413 EEYE: Windows VDM TIB Local Privilege Escalation |
CVE-2004-0118
|
| FULLDISC:20040413 Microsoft Help and Support Center argument injection vulnerability |
CVE-2003-0907
|
| FULLDISC:20040414 Eudora 6.0.3 nested MIME DoS |
CVE-2004-1944
|
| FULLDISC:20040414 [SCAN Associates Sdn Bhd Security Advisory] Postnuke v 0.726 and below SQL injection |
CVE-2004-1949
|
| FULLDISC:20040425 Microsoft's Explorer and Internet Explorer long share name buffer overflow. |
CVE-2004-0214
|
| FULLDISC:20040427 Phenoelit Advisory <wir-haben-auch-mal-was-gefunden #0815 ++++> |
CVE-2004-2626
|
| FULLDISC:20040427 SMC Routers have remote administration enabled by default |
CVE-2004-1976
|
| FULLDISC:20040429 Re: Phenoelit Advisory |
CVE-2004-2626
|
| FULLDISC:20040429 Zonet ZSR1104WE Router problem |
CVE-2004-2637
|
| FULLDISC:20040430 Critical bug in Web Wiz Forum |
CVE-2004-2733
|
| FULLDISC:20040501 LHa buffer overflows and directory traversal problems |
CVE-2004-0234
CVE-2004-0235
|
| FULLDISC:20040502 Lha local stack overflow Proof Of Concept Code |
CVE-2004-0234
|
| FULLDISC:20040505 Corsaire Security Advisory - Verity Ultraseek path disclosure issue |
CVE-2004-0050
|
| FULLDISC:20040506 Advisory: Heimdal kadmind version4 remote heap overflow |
CVE-2004-0434
|
| FULLDISC:20040506 Buffer overflows in exim, yet still exim much better than windows |
CVE-2004-0399
CVE-2004-0400
|
| FULLDISC:20040507 Eudora file URL buffer overflow |
CVE-2004-2005
|
| FULLDISC:20040507 Pound <=1.5 Remote Exploit (Format string bug) |
CVE-2004-2026
|
| FULLDISC:20040509 Icecast 2.0.0 preauth overflow |
CVE-2004-2027
|
| FULLDISC:20040510 OpenServer 5.0.5 OpenServer 5.0.6 OpenServer 5.0.7 : X sessions which are not started by scologin cannot use the X authorization protocol |
CVE-2004-0390
|
| FULLDISC:20040511 Linux Kernel sctp_setsockopt() Integer Overflow |
CVE-2004-2013
|
| FULLDISC:20040512 EEYE: Symantec Multiple Firewall DNS Response Denial-of-Service |
CVE-2004-0445
|
| FULLDISC:20040512 EEYE: Symantec Multiple Firewall NBNS Response Processing Stack Overflow |
CVE-2004-0444
|
| FULLDISC:20040512 EEYE: Symantec Multiple Firewall NBNS Response Remote Heap Corruption |
CVE-2004-0444
|
| FULLDISC:20040512 EEYE: Symantec Multiple Firewall Remote DNS KERNEL Overflow |
CVE-2004-0444
|
| FULLDISC:20040512 MS04-015 - Windows Help Center - Dvdupgrade |
CVE-2004-0199
|
| FULLDISC:20040512 Mdaemon 7.0.1 IMAP overflow. |
CVE-2004-2292
|
| FULLDISC:20040512 Sweex 802.11g router/accesspoint config disclosure / remote config |
CVE-2004-2455
|
| FULLDISC:20040513 802.11b (others) single packet DoS |
CVE-2004-0459
|
| FULLDISC:20040514 IE Crash - Anyone Seen This Before? |
CVE-2004-0479
|
| FULLDISC:20040516 Vuln. MacOSX/Safari: Remote help-call, execute scripts |
CVE-2004-0486
|
| FULLDISC:20040516 WebCT: Cross Site Scripting Vulnerability |
CVE-2004-2015
|
| FULLDISC:20040517 Buffer Overflow in ActivePerl ? |
CVE-2004-2022
|
| FULLDISC:20040517 OpenBSD procfs |
CVE-2004-0482
|
| FULLDISC:20040517 RE: Buffer Overflow in ActivePerl ? |
CVE-2004-2022
|
| FULLDISC:20040517 RE: [Full-Disclosure] Buffer Overflow in ActivePerl ? |
CVE-2004-2286
|
| FULLDISC:20040517 ROCKET SCIENCE: Outllook 2003 |
CVE-2004-0503
|
| FULLDISC:20040517 [waraxe-2004-SA#029 - Possible remote file inclusion in PhpNuke 6.x - 7.3] |
CVE-2004-2018
|
| FULLDISC:20040517 mod_ssl ssl_util_uuencode_binary potential problem |
CVE-2004-0488
|
| FULLDISC:20040518 Advisory 05/2004: phpMyFAQ local file inclusion vulnerability |
CVE-2004-2255
CVE-2004-2256
|
| FULLDISC:20040518 Re: Buffer Overflow in ActivePerl ? |
CVE-2004-2022
|
| FULLDISC:20040518 Re[2]: [Full-Disclosure] Buffer Overflow in ActivePerl ? |
CVE-2004-2022
|
| FULLDISC:20040519 Advisory 06/2004: libneon date parsing vulnerability |
CVE-2004-0398
|
| FULLDISC:20040519 Advisory 07/2004: CVS remote vulnerability |
CVE-2004-0396
|
| FULLDISC:20040519 Advisory 08/2004: Subversion remote vulnerability |
CVE-2004-0397
|
| FULLDISC:20040519 Ph0rum phorum_uriauth replay attack |
CVE-2004-2243
|
| FULLDISC:20040524 SSH URI handler remote arbitrary code execution |
CVE-2004-0489
|
| FULLDISC:20040527 DoS in MiniShare 1.3.2 |
CVE-2004-2035
|
| FULLDISC:20040529 [waraxe-2004-SA#031 - Multiple vulnerabilities in e107 version 0.615] |
CVE-2004-2039
CVE-2004-2040
CVE-2004-2041
CVE-2004-2042
|
| FULLDISC:20040602 180 Solutions Exploits and Toolbars Hacking Patched Users(I.E Exploits) |
CVE-2004-0549
|
| FULLDISC:20040602 Firebird [ AND Interbase 7 ] Database Remote Database Name Overflow |
CVE-2004-2043
|
| FULLDISC:20040603 Phishing for Opera (GM#007-OP) |
CVE-2004-0537
|
| FULLDISC:20040603 Surgemail - Multiple Vulnerabilities |
CVE-2004-2547
CVE-2004-2548
|
| FULLDISC:20040604 [CYSA-0329] Password recovery vulnerability in FoolProof Security 3.9.x for Windows 95/9 |
CVE-2004-2555
|
| FULLDISC:20040606 Internet explorer 6 execution of arbitrary code (An analysis of the 180 Solutions Trojan) |
CVE-2004-0549
|
| FULLDISC:20040609 ASPDOTNETSTOREFRONT ASPDOTNETSTOREFRONT Improper Upload Validation |
CVE-2004-2700
|
| FULLDISC:20040609 Advisory 09/2004: More CVS remote vulnerabilities |
CVE-2004-0414
CVE-2004-0416
CVE-2004-0417
CVE-2004-0418
CVE-2004-1471
|
| FULLDISC:20040609 Advisory: ASPDOTNETSTOREFRONT Improper Session Validation |
CVE-2004-2699
|
| FULLDISC:20040609 [FULL DISCLOSURE] ASPDOTNETSTOREFRONT Cross-Site Scripting Vulnerability |
CVE-2004-2701
|
| FULLDISC:20040610 Buffer overflow in apache mod_proxy,yet still apache much better than windows |
CVE-2004-0492
|
| FULLDISC:20040610 [0xbadc0ded #04] smtp.proxy <= 1.1.3 |
CVE-2004-2417
|
| FULLDISC:20040611 [waraxe-2004-SA#032 - Multiple security flaws in PhpNuke 6.x - 7.3] |
CVE-2004-2295
CVE-2004-2297
|
| FULLDISC:20040613 VP-ASP Shopping Cart Multiple Vulnerabilities |
CVE-2004-2411
CVE-2004-2413
|
| FULLDISC:20040614 Internet Explorer Remote Null Pointer Crash(mshtml.dll) |
CVE-2004-2434
|
| FULLDISC:20040614 Serendipity Blog vuln |
CVE-2006-1910
|
| FULLDISC:20040615 RE: Internet Explorer Remote Null Pointer Crash(mshtml.dll) |
CVE-2004-2434
|
| FULLDISC:20040616 "IBM Access Support" (eGatherer) Activex Dangerous Methods Vulnerability |
CVE-2004-2663
|
| FULLDISC:20040616 Checkpoint Firewall-1 IKE Vendor ID information leakage |
CVE-2004-2679
|
| FULLDISC:20040621 [Full-Disclosure] iDEFENSE Security Advisory 06.21.04 - GNU Radius SNMP Invalid OID Denial of Service Vulnerability |
CVE-2004-0576
|
| FULLDISC:20040622 Wireless Modem (BT Voyager 2000 Wireless ADSL Router cleartext password) |
CVE-2004-0616
|
| FULLDISC:20040627 ZH2004-14SA (security advisory):Sql Injection in Infinity WEB |
CVE-2004-0625
|
| FULLDISC:20040628 DoS in apache httpd 2.0.49, yet still apache much better than windows |
CVE-2004-0493
|
| FULLDISC:20040629 DoS in popclient 3.0b6 |
CVE-2004-0666
|
| FULLDISC:20040630 DSL router Prestige 650HW-31 |
CVE-2004-0670
|
| FULLDISC:20040701 iDEFENSE Security Advisory 07.01.04: WinGate Information Disclosure |
CVE-2004-0577
CVE-2004-0578
|
| FULLDISC:20040702 Multiple Vulnerabilities in Easy Chat Server 1.2 |
CVE-2004-2466
CVE-2004-2467
|
| FULLDISC:20040702 pavuk buffer overflow |
CVE-2004-0456
|
| FULLDISC:20040703 Re: SUSE Security Announcement: kernel (SUSE-SA:2004:020) |
CVE-2004-0592
|
| FULLDISC:20040705 Multiples vulnerabilities in JAWS |
CVE-2004-2444
CVE-2004-2445
|
| FULLDISC:20040706 Multiples vulnerabilities in JAWS |
CVE-2004-2443
|
| FULLDISC:20040707 Re: shell:windows command question |
CVE-2004-0572
|
| FULLDISC:20040707 shell:windows command question |
CVE-2004-0648
|
| FULLDISC:20040708 RE: php-exec-dir vulnerable after latest upgrade |
CVE-2004-2692
|
| FULLDISC:20040708 Re: php-exec-dir vulnerable after latest upgrade |
CVE-2004-2692
|
| FULLDISC:20040708 php-exec-dir vulnerable after latest upgrade |
CVE-2004-2692
|
| FULLDISC:20040712 Brand New Hole: Internet Explorer: HijackClick 3 |
CVE-2004-0841
|
| FULLDISC:20040714 Advisory 11/2004: PHP memory_limit remote vulnerability |
CVE-2004-0594
|
| FULLDISC:20040714 Advisory 12/2004: PHP strip_tags() bypass vulnerability |
CVE-2004-0595
|
| FULLDISC:20040714 HtmlHelp - .CHM File Heap Overflow |
CVE-2004-0201
|
| FULLDISC:20040715 XSS in Board Power forum |
CVE-2004-1441
|
| FULLDISC:20040717 [FMADV] Format String Bug in OllyDbg 1.10 |
CVE-2004-0733
|
| FULLDISC:20040718 Cross-Site Scripting email Outblaze |
CVE-2004-2625
|
| FULLDISC:20040719 Buffer overflow in Whisper FTP Surfer 1.0.7 |
CVE-2004-0739
|
| FULLDISC:20040723 Crash IE with 11 bytes ;) |
CVE-2004-0842
|
| FULLDISC:20040725 Mozilla Firefox Certificate Spoofing |
CVE-2004-0763
|
| FULLDISC:20040726 Opera 7.53 (Build 3850) Address Bar Spoofing Issue |
CVE-2004-2491
|
| FULLDISC:20040728 Re: Crash IE with 11 bytes ;) |
CVE-2004-0842
|
| FULLDISC:20040728 Re: Internet Explorer Remote Null Pointer Crash(mshtml.dll) |
CVE-2004-2434
|
| FULLDISC:20040728 SoX buffer overflows when handling .WAV files |
CVE-2004-0557
|
| FULLDISC:20040801 Remotely Exploitable DoS Flaw in XP and 2003 |
CVE-2004-2527
|
| FULLDISC:20040802 Benchmark Designs' WHM Autopilot backdoor vulnerability to plain-text password. |
CVE-2004-2524
|
| FULLDISC:20040802 IBM Directory Server - ldacgi.exe |
CVE-2004-2526
|
| FULLDISC:20040804 Bug@thttpd |
CVE-2004-2628
|
| FULLDISC:20040804 Multiple Vulnerabilities in Free Web Chat |
CVE-2004-2646
CVE-2004-2647
|
| FULLDISC:20040805 Opera: Location, Location, Location |
CVE-2004-2570
|
| FULLDISC:20040808 Serv-U 3.x, 4.x, 5.x local privilege escalation vulnerability |
CVE-2004-2532
|
| FULLDISC:20040811 ISS BlackIce Server Protect Unprivileged User Attack |
CVE-2004-1714
|
| FULLDISC:20040816 SQL Injection in CACTI |
CVE-2004-1736
CVE-2004-1737
|
| FULLDISC:20040817 Gallery 1.4.4 save_photos.php PHP Insertion Proof of Concept |
CVE-2004-1466
|
| FULLDISC:20040817 Multiple remote vulnerabilities in lukemftpd aka. tnftpd |
CVE-2004-0794
|
| FULLDISC:20040818 Re: gnu-less Format String Vulnerability |
CVE-2004-2264
|
| FULLDISC:20040818 What A Drag II XP SP2 |
CVE-2004-0839
|
| FULLDISC:20040818 gnu-less Format String Vulnerability |
CVE-2004-2264
|
| FULLDISC:20040819 PADS Simple Stack Overflow |
CVE-2004-2269
|
| FULLDISC:20040819 Unsecure file permission of ZoneAlarm pro. |
CVE-2004-2713
|
| FULLDISC:20040820 CAU-2004-0002 - imwheel Predictable PidFile Name Race Condition |
CVE-2004-2698
|
| FULLDISC:20040820 Re: Unsecure file permission of ZoneAlarm pro. |
CVE-2004-2713
|
| FULLDISC:20040821 Re: Unsecure file permission of ZoneAlarm pro. |
CVE-2004-2713
|
| FULLDISC:20040822 [PoC] Nasty bug(s) found in Axis Network Camera/Video Servers |
CVE-2004-2425
CVE-2004-2426
CVE-2004-2427
|
| FULLDISC:20040824 Re: [Full-Disclosure] XSS in Plesk 7.1 Reloaded |
CVE-2004-2702
|
| FULLDISC:20040824 XSS in Plesk 7.1 Reloaded |
CVE-2004-2702
|
| FULLDISC:20040824 a2ps executing shell commands from file name |
CVE-2004-1170
|
| FULLDISC:20040827 DoS in Chat Anywhere 2.72a |
CVE-2004-2724
|
| FULLDISC:20040827 Power Quest Deploy Center 5.5 boot disks |
CVE-2004-2609
|
| FULLDISC:20040830 MSInfo Buffer Overflow |
CVE-2004-1649
|
| FULLDISC:20040831 Axis Network Camera and Video Server Security Advisory |
CVE-2004-2425
CVE-2004-2426
|
| FULLDISC:20040902 AW: [Full-Disclosure] New Microsoft Internet Explorer mshtml.dll |
CVE-2003-1048
|
| FULLDISC:20040902 [SHATTER Team Security Alert] Multiple vulnerabilities in Oracle Database Server |
CVE-2004-1774
|
| FULLDISC:20040903 Re: [Full-Disclosure] New Microsoft Internet Explorer mshtml.dll Denial of Service? |
CVE-2003-1048
|
| FULLDISC:20040903 [RLSA_01-2004] QNX PPPoEd local root vulnerabilities |
CVE-2004-1390
CVE-2004-1391
|
| FULLDISC:20040905 Buffer Overflow in DBMS_SYSTEM.KSDWRT() in Oracle8i - 9i |
CVE-2004-0638
|
| FULLDISC:20040907 Corsaire Security Advisory - Business Objects WebIntelligence XSS issue |
CVE-2004-0534
|
| FULLDISC:20040907 Corsaire Security Advisory - Business Objects WebIntelligence arbitrary document deletion issue |
CVE-2004-0533
|
| FULLDISC:20040907 mpg123 buffer overflow vulnerability |
CVE-2004-0805
|
| FULLDISC:20040914 Crash in Lords of the Realm III 1.01 |
CVE-2004-2165
|
| FULLDISC:20040916 FlowSecurity.org: Local Stack Overflow on htpasswd apache 1.3.31 advsory. |
CVE-2006-1078
|
| FULLDISC:20040916 Freeze in Pigeon Server 3.02.0143 |
CVE-2004-1688
|
| FULLDISC:20040918 Re: GoogleToolbar:About -- Allows Script Injection |
CVE-2004-2475
|
| FULLDISC:20040921 Pinnacle ShowCenter Skin Denial of Service |
CVE-2004-1699
|
| FULLDISC:20040922 Remote buffer overflow in MDaemon IMAP and SMTP server |
CVE-2004-1546
|
| FULLDISC:20040923 Motorola Wireless Router WR850G Authentication Circumvention |
CVE-2004-1550
|
| FULLDISC:20040923 Multiple vulnerabilities in ActivePost Standard 3.1 |
CVE-2004-2616
|
| FULLDISC:20040926 HTTP Response Splitting and SQL injection in megabbs forum |
CVE-2004-2145
CVE-2004-2146
|
| FULLDISC:20040928 Serendipity 0.7-beta1 SQL Injection PoC |
CVE-2004-2157
CVE-2004-2158
|
| FULLDISC:20040928 directory traversal in ParaChat Server 5.5 |
CVE-2004-1568
|
| FULLDISC:20040929 Re: directory traversal in ParaChat Server 5.5 |
CVE-2004-1568
|
| FULLDISC:20040930 Multiple vulnerabilities in w-agora forum |
CVE-2004-1562
CVE-2004-1563
CVE-2004-1564
CVE-2004-1565
|
| FULLDISC:20041006 Directory traversal in Tridcomm 1.3 |
CVE-2004-1583
|
| FULLDISC:20041008 Limited \secure\ buffer-overflow in some old Monolith games |
CVE-2004-1587
|
| FULLDISC:20041010 unarj dir-transversal bug (../../../..) |
CVE-2004-1027
|
| FULLDISC:20041011 CJOverkill 4.0.3 XSS Proof of Concept |
CVE-2004-2193
|
| FULLDISC:20041011 Turbo Traffic Trader Nitro v1.0 SQL Injection & XSS Proofs of Concept |
CVE-2004-2191
CVE-2004-2192
|
| FULLDISC:20041012 Microsoft cabarc directory traversal |
CVE-2004-2643
|
| FULLDISC:20041012 [HV-HIGH] RIM Blackberry buffer overflow, DoS, data loss |
CVE-2004-1597
|
| FULLDISC:20041013 unzoo 4.4 directory travels |
CVE-2004-2190
|
| FULLDISC:20041015 Directory traversal in Yak! 2.1.2 |
CVE-2004-2184
|
| FULLDISC:20041018 Multiple vulnerabilities in Sage Saleslogix |
CVE-2004-1605
CVE-2004-1606
CVE-2004-1607
CVE-2004-1608
CVE-2004-1609
CVE-2004-1611
CVE-2004-1612
|
| FULLDISC:20041018 Web browsers - a mini-farce |
CVE-2004-1613
CVE-2004-1614
CVE-2004-1615
CVE-2004-1616
CVE-2004-1617
|
| FULLDISC:20041018: phpMyAdmin: Vulnerability in MIME-based transformation |
CVE-2004-2630
|
| FULLDISC:20041022 J2ME security vulnerabilities |
CVE-2004-2627
|
| FULLDISC:20041023 python does mangleme (with IE bugs!) |
CVE-2004-1050
|
| FULLDISC:20041025 Kaffeine Media Player Conteny Type overflow |
CVE-2004-1034
|
| FULLDISC:20041025 python does mangleme (with IE bugs!) |
CVE-2004-1050
|
| FULLDISC:20041029 Apache 1.3.33 local buffer overflow in apache 1.3.31 not fixed in .33? |
CVE-2006-1078
|
| FULLDISC:20041101 DoS in Apache 2.0.52 ? |
CVE-2004-0942
|
| FULLDISC:20041101 XDICT Buffer OverRun Vulnerability,funny :-) |
CVE-2004-1494
|
| FULLDISC:20041102 CSS in E-Mails possible E-Mail-Validity Check for Spammers? |
CVE-2004-2226
|
| FULLDISC:20041103 [HV-MED] Zip/Linux long path buffer overflow |
CVE-2004-1010
|
| FULLDISC:20041107 [New VULNERABILTY + Exploit] MiniShare, Minimal HTTP Server for Windows, Remote Buffer Overflow Exploit |
CVE-2004-2271
|
| FULLDISC:20041110 Nortel Networks Contivity VPN Client information leakage vulnerability |
CVE-2004-1105
|
| FULLDISC:20041110 [Advisory + Exploit] SlimFTPd <= 3.15 |
CVE-2004-2418
|
| FULLDISC:20041111 [waraxe-2004-SA#037 - Sql injection bug in Phorum 5.0.12 and older versions] |
CVE-2004-1518
|
| FULLDISC:20041111 ez-ipupdate format string bug |
CVE-2004-0980
|
| FULLDISC:20041114 Format string bug in Army Men RTS |
CVE-2004-1522
|
| FULLDISC:20041116 Re: [Full-Disclosure] TWiki search function allows arbitrary shell command execution |
CVE-2004-1037
|
| FULLDISC:20041116 Skype callto:// BoF technical details |
CVE-2004-1114
|
| FULLDISC:20041119 Java Vulnerabilities in Opera 7.54 |
CVE-2004-1489
|
| FULLDISC:20041122 CoffeeCup FTP Clients Buffer Overflow Vulnerability |
CVE-2004-1118
|
| FULLDISC:20041122 WeOnlyDo! COM Ftp DELUXE ActiveX Control Buffer Overflow Vulnerability |
CVE-2004-1118
|
| FULLDISC:20041124 Buffer Overflow in Open Dc Hub 0.7.14 |
CVE-2004-1127
|
| FULLDISC:20041124 Jabberd2.x remote BuffJabberd2.x remote Buffer Overflowser Overflows |
CVE-2004-0953
|
| FULLDISC:20041124 STG Security Advisory: [SSA-20041122-10] KorWeblog directory traversal vulnerability |
CVE-2004-1543
|
| FULLDISC:20041125 FIREFOX flaws: nested array sort() loop Stack overflow exception |
CVE-2004-1200
|
| FULLDISC:20041125 MSIE & FIREFOX flaws: "detailed" advisory and comments that you probably don't want to read anyway |
CVE-2004-1198
CVE-2004-1200
|
| FULLDISC:20041125 More Browser flaws on MACOSX: nested array sort() loop Stack overflow exception |
CVE-2004-1199
|
| FULLDISC:20041125 Re: MSIE flaws: nested array sort() loop Stack overflow exception |
CVE-2004-1201
|
| FULLDISC:20041125 Re: Opera flaws: nested array sort() loop Stack overflow exception |
CVE-2004-1201
|
| FULLDISC:20041126 phpCMS <= 1.2.1 Xss Vulnerability, Information disclosure |
CVE-2004-1202
CVE-2004-1203
|
| FULLDISC:20041129 Format string flaw in VMWare Workstation 4.5.2 build-8848. |
CVE-2004-2515
|
| FULLDISC:20041129 Multiple buffer overlows in WS_FTP Server Version 5.03, 2004.10.14. |
CVE-2004-1135
|
| FULLDISC:20041129 Password Disclosure for SMB Shares in KDE's Konqueror |
CVE-2004-1171
|
| FULLDISC:20041129 Privilege escalation flaw in MDaemon 7.2. |
CVE-2004-2504
|
| FULLDISC:20041129 ncpfs buffer overflow |
CVE-2004-1079
|
| FULLDISC:20041130 Re: Privilege escalation flaw in MDaemon 7.2. |
CVE-2004-2504
|
| FULLDISC:20041201 Multiple buffer overflows exist in Mercury/32, v4.01a, Dec 8 2003. |
CVE-2004-1211
|
| FULLDISC:20041206 Multiple vulnerabilities in w3who ISAPI DLL |
CVE-2004-1133
CVE-2004-1134
|
| FULLDISC:20041213 Multiple XSS Vulnerabilities in several UBB.Thread Versions |
CVE-2004-2509
CVE-2004-2510
|
| FULLDISC:20041213 Socket unreacheable in the Lithtech engine (new protocol) |
CVE-2004-1395
|
| FULLDISC:20041213 Winamp 5.07 (latest version) Remote Crash + other |
CVE-2004-1396
|
| FULLDISC:20041214 OpenText FirstClass 8.0 HTTP Daemon /Search Remote DoS Vulnerability |
CVE-2004-2496
|
| FULLDISC:20041215 STG Security Advisory: [SSA-20041215-15] Vulnerability of uploading files with multiple extensions in MoniWiki |
CVE-2004-1545
|
| FULLDISC:20041215 fun with linux kernel |
CVE-2004-1333
CVE-2004-1334
CVE-2004-1335
|
| FULLDISC:20041220 FreezeX file access vulnerability |
CVE-2004-2648
|
| FULLDISC:20041223 Cross-Site Scripting - an industry-wide problem |
CVE-2004-1059
CVE-2004-1061
CVE-2004-1062
CVE-2004-1146
CVE-2005-0514
|
| FULLDISC:20041223 Plesk 7 Cross-Site Scripting |
CVE-2004-2702
|
| FULLDISC:20041223 STG Security Advisory: [SSA-20041220-16] PHP source injection and cross-site scripting vulnerabilities in ZeroBoard |
CVE-2004-1419
CVE-2004-2738
|
| FULLDISC:20041223 [USN-48-1] xpdf, tetex-bin vulnerabilities |
CVE-2004-1125
|
| FULLDISC:20041223 [USN-49-1] debmake vulnerability |
CVE-2004-1179
|
| FULLDISC:20050101 Two Vulnerabilities in ViewCVS |
CVE-2005-4830
CVE-2005-4831
|
| FULLDISC:20050107 Simple PHP Blog directory traversal vulnerability |
CVE-2005-0214
|
| FULLDISC:20050107 grsecurity 2.1.0 release / 5 Linux kernel advisories |
CVE-2005-0179
CVE-2005-0180
CVE-2005-0504
|
| FULLDISC:20050110 Multi-vendor AV gateway image inspection bypass vulnerability |
CVE-2005-0218
|
| FULLDISC:20050111 Apple Airport WDS DoS |
CVE-2005-0289
|
| FULLDISC:20050112 Linux kernel i386 SMP page fault handler privilege escalation |
CVE-2005-0001
|
| FULLDISC:20050112 TFTPD32 Long FileName Remote Denial of Service |
CVE-2005-4882
|
| FULLDISC:20050112 [waraxe-2005-SA#039] - Critical Sql Injection in Sgallery module for PhpNuke |
CVE-2005-0375
CVE-2005-0376
CVE-2005-0377
|
| FULLDISC:20050114 Internet Explorer (SP2) - Remote File Download |
CVE-2005-0110
|
| FULLDISC:20050114 Re: Multi-vendor AV gateway image inspection bypass vulnerability |
CVE-2005-0218
|
| FULLDISC:20050116 Minis directory traversal vulnerability |
CVE-2005-0293
CVE-2005-0294
|
| FULLDISC:20050116 phpGiftReq SQL Injection |
CVE-2005-0292
|
| FULLDISC:20050117 Multiple Vulnerabilities in Netgear FVS318 Router |
CVE-2005-0290
CVE-2005-0291
|
| FULLDISC:20050119 Multiple vulnerabilities in Konversation |
CVE-2005-0129
CVE-2005-0130
CVE-2005-0131
|
| FULLDISC:20050121 NOVL-2005-10096251 GroupWise WebAccess error handling modules (report) |
CVE-2005-0296
|
| FULLDISC:20050122 several BO's in goldenftpd |
CVE-2005-0566
|
| FULLDISC:20050127 DMA[2005-0127a] - 'Apple OSX batch family poor use of setuid' |
CVE-2005-0125
|
| FULLDISC:20050130 Broadcast crash in Xpand Rally 1.0.0.0 |
CVE-2005-0325
|
| FULLDISC:20050201 Remotely exploitable buffer overflow vulnerability in Savant Web Server 3.1 |
CVE-2005-0338
|
| FULLDISC:20050206 Microsoft Outlook Web Access URL Injection Vulnerability |
CVE-2005-0420
|
| FULLDISC:20050206 Re: state of homograph attacks |
CVE-2005-0237
|
| FULLDISC:20050206 state of homograph attacks |
CVE-2005-0233
CVE-2005-0234
CVE-2005-0235
CVE-2005-0236
CVE-2005-0237
CVE-2005-0238
|
| FULLDISC:20050207 DMA[2005-0131a] - 'Setuid Perl PERLIO_DEBUG root owned file creation' |
CVE-2005-0155
|
| FULLDISC:20050207 DMA[2005-0131b] - 'Setuid Perl PERLIO_DEBUG |
CVE-2005-0156
|
| FULLDISC:20050208 XSS VULNERABILITY AT MODULE PostWrap |
CVE-2005-0412
|
| FULLDISC:20050209 Administrivia: List Compromised due to Mailman Vulnerability |
CVE-2005-0202
|
| FULLDISC:20050209 Internet Explorer zone spoofing with encoded URLs |
CVE-2005-0054
|
| FULLDISC:20050212 Credit Card data disclosure in CitrusDB |
CVE-2005-0229
|
| FULLDISC:20050214 Advisory: Authentication bypass in CitrusDB |
CVE-2005-0408
|
| FULLDISC:20050214 Advisory: Cross Site Scripting Vulnerability in Openconf Conference Management Software |
CVE-2005-0407
|
| FULLDISC:20050214 Advisory: Directory traversal in CitrusDB |
CVE-2005-0411
|
| FULLDISC:20050214 Advisory: JPEG EXIF information disclosure |
CVE-2005-0406
|
| FULLDISC:20050214 Advisory: SQL-Injection in CitrusDB |
CVE-2005-0410
|
| FULLDISC:20050214 Advisory: Upload Authorization bypass in CitrusDB |
CVE-2005-0409
|
| FULLDISC:20050215 Kayako eSupport v2.3.1 Support Tracker XSS |
CVE-2005-0487
|
| FULLDISC:20050215 linux kernel 2.6 fun. windoze is a joke |
CVE-2005-0529
CVE-2005-0530
CVE-2005-0531
CVE-2005-0532
|
| FULLDISC:20050217 Advisory: Multiple Vulnerabilities in BibORB |
CVE-2005-0251
CVE-2005-0252
CVE-2005-0253
CVE-2005-0254
|
| FULLDISC:20050219 Thomson TCW690 Denial Of Service Vulnerability |
CVE-2003-1085
|
| FULLDISC:20050219 pMachine Pro / pMachine Free Remote Code Execution |
CVE-2005-0513
|
| FULLDISC:20050221 SD Server 4.0.70 Directory Traversal Bug |
CVE-2005-0507
|
| FULLDISC:20050221 WindowsXPSP2 script-initiated popup window |
CVE-2005-0500
|
| FULLDISC:20050222 unace-1.2b multiple buffer overflows and directory traversal bugs |
CVE-2005-0160
CVE-2005-0161
|
| FULLDISC:20050224 Cyclades AlterPath Manager Vulnerabilities |
CVE-2005-0540
CVE-2005-0541
CVE-2005-0542
|
| FULLDISC:20050224 GAIM exploit |
CVE-2005-0573
|
| FULLDISC:20050226 Badblue HTTP Server, ext.dll buffer overflow |
CVE-2005-0595
|
| FULLDISC:20050228 Server termination in Scrapland 1.0 |
CVE-2005-0621
|
| FULLDISC:20050228 [USN-86-1] cURL vulnerability |
CVE-2005-0490
|
| FULLDISC:20050307 - Argeniss - Oracle Database Server Directory transversal |
CVE-2005-0701
|
| FULLDISC:20050308 Yahoo! Messenger Offline Mode Status Remote Buffer Overflow Vulnerability |
CVE-2005-0737
|
| FULLDISC:20050309 overwriting low kernel memory |
CVE-2005-0736
|
| FULLDISC:20050310 Multiple Vulnerabilities of PY Software Active Webcam WebServer |
CVE-2005-0730
CVE-2005-0731
CVE-2005-0732
CVE-2005-0733
CVE-2005-0734
|
| FULLDISC:20050313 Firefox 1.01 : spoofing status bar without using JavaScript |
CVE-2005-4809
|
| FULLDISC:20050313 [HAT-SQUAD] SafeNet Sentinel LM, UDP License Manager Exploit |
CVE-2005-0353
|
| FULLDISC:20050318 Java Web Start argument injection vulnerability |
CVE-2005-0836
|
| FULLDISC:20050325 Maxthon browser search bar information disclosure |
CVE-2005-0905
|
| FULLDISC:20050327 THai's Shoutbox XSS (Spoofing URL) BUG |
CVE-2005-0909
|
| FULLDISC:20050327 local root security bug in linux >= 2.4.6 <= 2.4.30-rc1 and 2.6.x.y <= 2.6.11.5 |
CVE-2005-0750
|
| FULLDISC:20050328 THai's Shoutbox correction name |
CVE-2005-0909
|
| FULLDISC:20050329 Adventia Chat |
CVE-2005-0919
|
| FULLDISC:20050329 E-Data |
CVE-2005-0924
|
| FULLDISC:20050405 MailEnable Imapd remote BoF + Exploit [x0n3-h4ck] |
CVE-2005-1014
|
| FULLDISC:20050406 Re: MailEnable Imapd remote BoF + Exploit [x0n3-h4ck] |
CVE-2005-1015
|
| FULLDISC:20050407 Cisco Linksys WET11 Password Resetting Vulnerability |
CVE-2005-1059
|
| FULLDISC:20050410 rsnapshot Security Advisory 001 |
CVE-2005-1064
|
| FULLDISC:20050412 XAMPP |
CVE-2005-1077
CVE-2005-1078
|
| FULLDISC:20050415 Use of function "log" in Perl module Net::Server |
CVE-2005-1127
|
| FULLDISC:20050416 TCP/IP Stack Vulnerability |
CVE-2005-1184
|
| FULLDISC:20050418 Re: TCP/IP Stack Vulnerability |
CVE-2005-1184
|
| FULLDISC:20050418 XSS bug in JAWS gadget Glossary (0.4-latestbeta (beta 2)) |
CVE-2005-1231
|
| FULLDISC:20050427 Privilege escalation and password protection bypass in Altiris Client Service for Windows (Version 6.0.88) |
CVE-2005-1590
|
| FULLDISC:20050430 DMA[2005-0425a] - 'ESRI ArcGIS 9.x multiple local vulnerabilities |
CVE-2005-1393
CVE-2005-1394
|
| FULLDISC:20050501 DMA[2005-0501a] - 'ARPUS/Ce setuid buffer overflow and file overwrite' |
CVE-2005-1395
CVE-2005-1396
|
| FULLDISC:20050501 Remote buffer overflow in GlobalScape Secure FTP server 3.0.2 |
CVE-2005-1415
|
| FULLDISC:20050504 Gamespy cd-key validation system: "Cd-key in use" DoS versus many games |
CVE-2005-1556
|
| FULLDISC:20050506 64 bit qmail fun |
CVE-2005-1513
CVE-2005-1514
CVE-2005-1515
|
| FULLDISC:20050506 [SEC-1 LTD] RSA SecurID Web Agent Heap Overflow |
CVE-2005-1471
|
| FULLDISC:20050508 Browser Based File Manager Administration Vulnerability |
CVE-2005-1602
|
| FULLDISC:20050508 Firefox Remote Compromise Leaked |
CVE-2005-1476
CVE-2005-1477
|
| FULLDISC:20050508 Firefox Remote Compromise Technical Details |
CVE-2005-1476
CVE-2005-1477
|
| FULLDISC:20050508 Server Remote File Manager DOS Exploit |
CVE-2005-1603
|
| FULLDISC:20050508 phpbb 2.0.15 released - patches high critical vuln |
CVE-2005-1193
|
| FULLDISC:20050509 SiteStudio |
CVE-2005-1605
|
| FULLDISC:20050510 Useless tidbit |
CVE-2005-2935
|
| FULLDISC:20050510 Useless tidbit (MS AntiSpyware) |
CVE-2005-2935
|
| FULLDISC:20050510 [Full-disclosure] [Scan Associates Advisory] Neteyes Nexusway multiple vulnerability |
CVE-2005-1560
|
| FULLDISC:20050510 [Scan Associates Advisory] Neteyes Nexusway multiple vulnerability |
CVE-2005-1558
CVE-2005-1559
|
| FULLDISC:20050511 [DR018] Quartz Composer / QuickTime 7 information leakage |
CVE-2005-1579
|
| FULLDISC:20050513 PhotoPost Arbitrary Data Exploit |
CVE-2005-1629
|
| FULLDISC:20050515 Gurgens Guest Book Password Database Vulnerability |
CVE-2005-1647
|
| FULLDISC:20050515 Ultimate Forum Password Database Vulnerability |
CVE-2005-1648
|
| FULLDISC:20050516 Advisory: Pico Server (pServ) Remote Command Injection |
CVE-2005-1365
|
| FULLDISC:20050516 Pico Server (pServ) Information Disclosure Of CGI Sources |
CVE-2005-1366
|
| FULLDISC:20050516 Pico Server (pServ) Local Information Disclosure |
CVE-2005-1367
|
| FULLDISC:20050517 MySQL < 4.0.12 && MySQL <= 5.0.4 : Insecure tmp |
CVE-2005-1636
|
| FULLDISC:20050520 ERRATA: [ GLSA 200505-13 ] FreeRADIUS: SQL injection and Denial of Service vulnerability |
CVE-2005-1454
CVE-2005-1455
|
| FULLDISC:20050528 Invision Power Board 1.x and 2.x Privilege Escalation Vulnerability |
CVE-2005-1816
|
| FULLDISC:20050529 XSS Bug in Jaws Glossary Action: ViewTerm ( v 0.4 - 0.5.1 (latest version)) |
CVE-2005-1800
|
| FULLDISC:20050601 HP Radia Notify Daemon: Multiple Buffer Overflow Vulnerabilities |
CVE-2005-1825
CVE-2005-1826
|
| FULLDISC:20050603 [DRUPAL-SA-2005-001] New Drupal release fixes critical security issue |
CVE-2005-1871
|
| FULLDISC:20050604 LSS.hr false positives. |
CVE-2005-1870
|
| FULLDISC:20050605 Re: LSS.hr false positives. (correction) |
CVE-2005-1870
|
| FULLDISC:20050606 Crob FTP Server remote buffer overflows |
CVE-2005-1873
|
| FULLDISC:20050606 GIPTables Firewall <= v1.1 insecure temporary file creation |
CVE-2005-1878
|
| FULLDISC:20050606 Lpanel.NET's Lpanel (all versions up to and including 1.59) is vulnerable in that it allows an attacker to close any support ticket within the system. |
CVE-2005-1932
|
| FULLDISC:20050606 Lpanel.NET's Lpanel (all versions up to and including 1.59) is vulnerable in that it allows an attacker to open any support ticket within the system. |
CVE-2005-1932
|
| FULLDISC:20050606 Lpanel.NET's Lpanel (all versions up to and including 1.59) is vulnerable in that it allows an attacker to reset the DNS information of any domain name managed by the system. |
CVE-2005-1932
|
| FULLDISC:20050606 Lpanel.NET's Lpanel (all versions up to and including 1.59) is vulnerable in that it allows an attacker to respond to any support ticket on the system. |
CVE-2005-1932
|
| FULLDISC:20050606 Lpanel.NET's Lpanel (all versions up to and including 1.59) is vulnerable to plain-text session credential leakage via script injection. |
CVE-2005-1877
|
| FULLDISC:20050606 Lpanel.NET's Lpanel (all versions up to and including 1.59) is vulnerable to the unauthorized viewing of client invoice information. |
CVE-2005-1932
|
| FULLDISC:20050606 Lpanel.NET's Lpanel (all versions up to and including 1.59) is vulnerable to unauthorized domain management access. |
CVE-2005-1932
|
| FULLDISC:20050606 LutelWall <= 0.97 insecure temporary file creation |
CVE-2005-1879
|
| FULLDISC:20050606 Popper webmail remote code execution vulnerability - advisory fix |
CVE-2005-1870
|
| FULLDISC:20050606 everybuddy <= 0.4.3 insecure temporary file creation |
CVE-2005-1880
|
| FULLDISC:20050612 [CIRT.DK - Advisory] Novell eDirectory 8.7.3 DOS Device name Denial of Service |
CVE-2005-1729
|
| FULLDISC:20050615 DMA[2005-0614a] - 'Global Hauri ViRobot Server cookie overflow' |
CVE-2005-2041
|
| FULLDISC:20050616 CoolCafe Chat SQL injection |
CVE-2005-2035
CVE-2005-2036
|
| FULLDISC:20050619 Advisory 01/2005: Fileupload/download vulnerability in Trac |
CVE-2005-2007
|
| FULLDISC:20050628 Solaris 9/10 ld.so fun |
CVE-2005-2072
|
| FULLDISC:20050704 log4sh insecure temporary file creation |
CVE-2005-1915
|
| FULLDISC:20050704 pam_ldap/nss_ldap password leak in a master+slave+start_tls LDAP setup |
CVE-2005-2069
|
| FULLDISC:20050705 Quickblogger |
CVE-2005-4785
|
| FULLDISC:20050710 ID Board 1.1.3 SQL Injection Vulnerability |
CVE-2005-2197
|
| FULLDISC:20050711 [CAID 35330, 35331]: CA Anti-Virus, CA Threat Manager, and CA Anti-Spyware Console Login and File Mapping Vulnerabilities |
CVE-2007-2522
CVE-2007-2523
|
| FULLDISC:20050718 Shorewall MACLIST Problem |
CVE-2005-2317
|
| FULLDISC:20050725 Help poor children in Uganda |
CVE-2005-2368
|
| FULLDISC:20050726 SPIDynamics WebInspect Cross-Application Scripting (XAS) |
CVE-2005-2442
|
| FULLDISC:20050729 Cisco IOS Shellcode Presentation |
CVE-2005-2451
|
| FULLDISC:20050801 Buffer overflow in BusinessMail email server system 4.60.00 |
CVE-2005-2472
|
| FULLDISC:20050808 [AppSecInc Advisory MYSQL05-V0001] Improper Filtering of Directory Traversal Characters in MySQL User Defined Functions |
CVE-2005-2573
|
| FULLDISC:20050808 [AppSecInc Advisory MYSQL05-V0002] Buffer Overflow in MySQL User Defined Functions |
CVE-2005-2558
|
| FULLDISC:20050809 (no subject) |
CVE-2005-2612
|
| FULLDISC:20050810 Evolution multiple remote format string bugs |
CVE-2005-2549
CVE-2005-2550
|
| FULLDISC:20050811 Fudforum: incompletely check of user rights in tree view gaining access to all messages |
CVE-2005-2600
|
| FULLDISC:20050811 Privilege escalation in Network Associates ePolicy Orchestrator Agent 3.5.0 (patch 3) |
CVE-2005-2554
|
| FULLDISC:20050811 Windows 2000 universal exploit for MS05-039 |
CVE-2005-1983
|
| FULLDISC:20050812 Multiple directory traversal vulnerabilities in Claroline |
CVE-2005-2598
|
| FULLDISC:20050814 STG Security Advisory: [SSA-20050812-27] Discuz! arbitrary script upload vulnerability |
CVE-2005-2614
|
| FULLDISC:20050817 Unicode Buffer Overflow in WinFtp Server 1.6.8 |
CVE-2005-2634
|
| FULLDISC:20050818 Re: mutt buffer overflow |
CVE-2005-2642
|
| FULLDISC:20050818 mutt buffer overflow |
CVE-2005-2642
|
| FULLDISC:20050818 w-agora 4.2.0 and prior Remote Directory Travel Vulnerability |
CVE-2005-2648
|
| FULLDISC:20050819 Re: Erroneous Informations - Multiple directory traversal vulnerabilities in Claroline |
CVE-2005-2598
|
| FULLDISC:20050820 [RETRO AUDITING] Elm remote buffer overflow in Expires header |
CVE-2005-2665
|
| FULLDISC:20050823 Server crash in Ventrilo 2.3.0 |
CVE-2005-2719
|
| FULLDISC:20050824 mplayer overflow |
CVE-2005-2718
|
| FULLDISC:20050825 NOVL-2005010098073 GroupWise Password Caching |
CVE-2005-2620
|
| FULLDISC:20050831 Dameware critical hole |
CVE-2005-2842
|
| FULLDISC:20050901 Multiple Phorum XSS and Session Hijacking vulnerabilities |
CVE-2005-2836
|
| FULLDISC:20050902 Re: Multiple Phorum XSS and Session Hijacking vulnerabilities |
CVE-2005-2836
|
| FULLDISC:20050905 thesitewizard.com chfeedback.pl CRLF Injection |
CVE-2005-2854
|
| FULLDISC:20050909 Mozilla Firefox "Host:" Buffer Overflow |
CVE-2005-2871
|
| FULLDISC:20050911 FireFox "Host:" Buffer Overflow is not just exploitable on FireFox |
CVE-2005-2871
|
| FULLDISC:20050913 LDU Version 801 vulnerable |
CVE-2005-4821
|
| FULLDISC:20050914 Oracle Reports: Generic SQL Injection Vulnerability via Lexical References |
CVE-2005-2983
|
| FULLDISC:20050915 SimpleCDR-X - Insecure tempfile handling |
CVE-2005-3012
|
| FULLDISC:20050916 [CIRT.DK - Advisory 37] TAC Vista Webstation 3.0 Directory Traversal bug in webinterface |
CVE-2005-3040
|
| FULLDISC:20050916 ncompress insecure temporary file creation |
CVE-2005-2991
|
| FULLDISC:20050918 Alstrasoft Epay Pro 2.0 and prior Directory Traversal Vulnerability |
CVE-2005-3026
|
| FULLDISC:20050920 Re: arc insecure temporary file creation |
CVE-2005-2992
|
| FULLDISC:20050920 bacula insecure temporary file creation |
CVE-2005-2995
|
| FULLDISC:20050920 perldiver |
CVE-2005-3066
CVE-2005-3067
|
| FULLDISC:20050923 SecureW2 TLS security problem |
CVE-2005-3087
|
| FULLDISC:20050924 It's time for some warez - Qpopper poppassd local r00t exploit |
CVE-2005-3098
|
| FULLDISC:20050924 It's time for some warez - wzdftpd remote exploit |
CVE-2005-3081
|
| FULLDISC:20050925 ContentServ features remote file disclosure |
CVE-2005-3086
|
| FULLDISC:20050925 Server crash and motd deletion in MultiTheftAuto 0.5 patch 1 |
CVE-2005-3064
CVE-2005-3065
|
| FULLDISC:20050926 RealPlayer && HelixPlayer Remote Format String |
CVE-2005-2710
|
| FULLDISC:20050927 Re: [ISR] - Novell GroupWise Client Integer Overflow |
CVE-2005-2804
|
| FULLDISC:20050927 [ISR] - Novell GroupWise Client Integer Overflow |
CVE-2005-2804
|
| FULLDISC:20050929 Serendipity: Account Hijacking / CSRF Vulnerability |
CVE-2005-3129
|
| FULLDISC:20050929 [NRVA05-08] - Arbitrary file download by NateOn Messagener's ActiveX and DoS |
CVE-2005-3113
CVE-2005-3114
|
| FULLDISC:20051003 Kaspersky Antivirus Library Remote Heap Overflow |
CVE-2005-3142
|
| FULLDISC:20051004 iDEFENSE Security Advisory 10.04.05: UW-IMAP Netmailbox Name Parsing Buffer Overflow Vulnerability |
CVE-2005-2933
|
| FULLDISC:20051005 Tellme 1.2 |
CVE-2005-4698
CVE-2005-4699
CVE-2005-4700
|
| FULLDISC:20051006 OScommerce: "Additional Images" Module SQL Injection |
CVE-2005-4677
|
| FULLDISC:20051006 Secunia Research: Webroot Desktop Firewall Two Vulnerabilities |
CVE-2005-3197
CVE-2005-3198
|
| FULLDISC:20051007 Cross-Site-Scripting Vulnerabilities in Oracle HTMLDB |
CVE-2005-3202
|
| FULLDISC:20051007 Cross-Site-Scripting Vulnerability in Oracle XMLDB |
CVE-2005-3204
|
| FULLDISC:20051007 Cross-Site-Scripting Vulnerability in Oracle iSQL*Plus |
CVE-2005-3205
|
| FULLDISC:20051007 Plaintext Password Vulnerabilitiy during Installation of Oracle HTMLDB |
CVE-2005-3203
|
| FULLDISC:20051007 Shutdown TNS Listener via Oracle Forms Servlet |
CVE-2005-3207
|
| FULLDISC:20051007 Shutdown TNS Listener via Oracle iSQL*Plus |
CVE-2005-3206
|
| FULLDISC:20051008 xine/gxine CD Player Remote Format String Bug |
CVE-2005-2967
|
| FULLDISC:20051011 Secunia Research: WinRAR Format String and Buffer Overflow Vulnerabilities |
CVE-2005-3263
|
| FULLDISC:20051012 Secunia Research: Novell NetMail NMAP Agent "USER" Buffer Overflow Vulnerability |
CVE-2005-2469
|
| FULLDISC:20051012 ZDI-05-001: VERITAS NetBackup Remote CodeExecution |
CVE-2005-2715
|
| FULLDISC:20051012 [SEC-1 Advisory] Collaboration Data Objects Buffer Overflow Vulnerability |
CVE-2005-1987
|
| FULLDISC:20051012 [SEC-1 Advisory] GFI MailSecurity 8.1 Web Module Buffer Overflow |
CVE-2005-3182
|
| FULLDISC:20051013 Kerio Personal Firewall and Kerio Server Firewall FWDRV driver Local Denial of Service |
CVE-2005-3286
|
| FULLDISC:20051014 CAID 33485 - Computer Associates iGateway debug mode HTTP GET request buffer overflow vulnerability |
CVE-2005-3190
|
| FULLDISC:20051017 Lynx Remote Buffer Overflow |
CVE-2005-3120
|
| FULLDISC:20051019 RE: CAID 33485 - Computer Associates iGateway debug mode HTTP GET request buffer overflow vulnerability |
CVE-2005-3190
|
| FULLDISC:20051020 Exploit Oracle DB27 - CPU Octobre |
CVE-2005-3438
|
| FULLDISC:20051021 F.E.A.R. 1.01 likes lithsock |
CVE-2004-1395
|
| FULLDISC:20051022 Advisory 16/2005: phpMyAdmin Local File Inclusion Vulnerability |
CVE-2005-3300
|
| FULLDISC:20051022 Vulnerability in AL-Caricatier, V.2.5 And Prior Versions |
CVE-2005-4653
|
| FULLDISC:20051022 phpBB 2.0.17 (and other BB systems as well) Cookie disclosure exploit. |
CVE-2005-3310
|
| FULLDISC:20051024 Fwd: Vulnerability in Ar-blog ver 5.2 and prior versions |
CVE-2005-3494
CVE-2005-3495
|
| FULLDISC:20051024 php < 4.4.1 htaccess apache dos |
CVE-2005-3319
|
| FULLDISC:20051025 PHP iCalendar CSS |
CVE-2005-3366
|
| FULLDISC:20051025 Re: [Full-disclosure] SEC-Consult SA 20051025-1 :: RSA ACE Web Agent |
CVE-2005-3329
|
| FULLDISC:20051025 Re: [Full-disclosure] phpBB 2.0.17 (and other BB systems as well) Cookie disclosure exploit. |
CVE-2005-3477
|
| FULLDISC:20051025 SEC-Consult SA 20051025-1 :: RSA ACE Web Agent XSS |
CVE-2005-3329
|
| FULLDISC:20051025 Snort's BO pre-processor exploit |
CVE-2005-3252
|
| FULLDISC:20051026 chmlib exploitable buffer overflow |
CVE-2005-3318
|
| FULLDISC:20051027 Hasbani-WindWeb/2.0 Remote DoS [ with exploit ] |
CVE-2005-3475
|
| FULLDISC:20051028 Multiple vulnerabilities within RockLiffe MailSite Express WebMail |
CVE-2005-3428
CVE-2005-3429
CVE-2005-3430
CVE-2005-3431
|
| FULLDISC:20051101 HYSA-2005-009 Elite Forum 1.0.0.0 XSS |
CVE-2005-3412
|
| FULLDISC:20051101 Snort Back Orifice Preprocessor Exploit (Win32 targets) |
CVE-2005-3252
|
| FULLDISC:20051101 new IE bug (confirmed on ALL windows) |
CVE-2005-4717
|
| FULLDISC:20051102 Buffer-overflow and crash in FlatFrag 0.3 |
CVE-2005-3491
CVE-2005-3492
|
| FULLDISC:20051102 Buffer-overflow and directory traversal in Asus |
CVE-2005-3489
CVE-2005-3490
|
| FULLDISC:20051102 Buffer-overflow in GO-Global for Windows |
CVE-2005-3483
|
| FULLDISC:20051102 Buffer-overflow in Glider collect'n kill 1.0.0.0 |
CVE-2005-3485
|
| FULLDISC:20051102 H4CREW-000002 Sambars 6.3 BETA 2 Proxy.asp XSS |
CVE-2005-3506
|
| FULLDISC:20051102 Limited directory traversal in NeroNET 1.2.0.2 |
CVE-2005-3484
|
| FULLDISC:20051102 Multiple vulnerabilities in Scorched 3D 39.1 |
CVE-2005-3486
CVE-2005-3487
CVE-2005-3488
|
| FULLDISC:20051102 Socket termination in Battle Carry .005 |
CVE-2005-3493
|
| FULLDISC:20051102 [ TZO-012005 ] F-Prot/Frisk Anti Virus bypass - ZIP Version Header |
CVE-2005-3499
|
| FULLDISC:20051103 Advisory: Apple QuickTime Player Remote Denial Of Service |
CVE-2005-2755
|
| FULLDISC:20051103 Buggy blogging |
CVE-2005-3101
CVE-2005-3102
CVE-2005-3103
CVE-2005-3104
CVE-2005-4689
CVE-2005-4690
|
| FULLDISC:20051104 Browser cookie handling: possible cross-domain cookie sharing |
CVE-2005-4684
CVE-2005-4685
|
| FULLDISC:20051104 Cerberus helpdesk |
CVE-2005-3502
|
| FULLDISC:20051104 DMA[2005-1104a] - 'GpsDrive friendsd2 format string vulnerability' |
CVE-2005-3523
|
| FULLDISC:20051104 RE: new IE bug (confirmed on ALL windows) |
CVE-2005-4717
|
| FULLDISC:20051104 Secunia Research: cPanel Entropy Chat Script Insertion Vulnerability |
CVE-2005-3505
|
| FULLDISC:20051105 linux-ftpd-ssl 0.17 warez |
CVE-2005-3524
|
| FULLDISC:20051106 http://prdelka.blackart.org.uk/exploitz/prdelka-vs-BSD-ptrace.tar.gz |
CVE-2005-4741
|
| FULLDISC:20051115 Authentication vulnerability in Belkin wireless devices |
CVE-2005-3802
|
| FULLDISC:20051115 Critical SQL Injection PHPNuke <= 7.8 |
CVE-2005-3792
|
| FULLDISC:20051116 Hitachi IP5000 VoIP Wifi phone multiple |
CVE-2005-3719
CVE-2005-3720
CVE-2005-3721
CVE-2005-3722
CVE-2005-3723
|
| FULLDISC:20051116 Senao SI-680H VoIP Wifi phone undocumented open port |
CVE-2005-3715
|
| FULLDISC:20051116 Zyxel P2000W (Version1) VoIP Wifi phone multiple |
CVE-2005-3724
CVE-2005-3725
|
| FULLDISC:20051116 freeftpd USER bufferoverflow |
CVE-2005-3683
|
| FULLDISC:20051116 mambo remote code sexecution |
CVE-2005-3738
|
| FULLDISC:20051116 re: freeftpd USER bufferoverflow |
CVE-2005-3683
|
| FULLDISC:20051117 UTstarcom F1000 VoIP Wifi phone multiple vulnerabilities |
CVE-2005-3716
CVE-2005-3717
CVE-2005-3718
|
| FULLDISC:20051117 freeftpd MKD buffer overflow etc... |
CVE-2005-3684
|
| FULLDISC:20051118 Secunia Research: MailEnable Buffer Overflow and Directory Traversal Vulnerabilities |
CVE-2005-3690
|
| FULLDISC:20051118 Secunia Research: Winmail Server Multiple Vulnerabilities |
CVE-2005-3692
CVE-2005-3811
|
| FULLDISC:20051121 Gadu-Gadu several vulnerabilities (version <= 7.20) |
CVE-2005-3887
CVE-2005-3888
CVE-2005-3889
CVE-2005-3890
CVE-2005-3891
CVE-2005-3892
|
| FULLDISC:20051122 Cisco PIX TCP Connection Prevention |
CVE-2005-3774
|
| FULLDISC:20051122 Google Talk Denial of Service - BenjiBug |
CVE-2005-3899
|
| FULLDISC:20051122 OTRS 1.x/2.x Multiple Security Issues |
CVE-2005-3893
CVE-2005-3894
CVE-2005-3895
|
| FULLDISC:20051122 Re: Torrential 1.2 getdox.php Directory Traversal |
CVE-2005-4253
|
| FULLDISC:20051122 Secunia Research: Opera Command Line URL Shell Command Injection |
CVE-2005-3750
|
| FULLDISC:20051122 VHCS 2.x HTTP Error Cross Site Scripting |
CVE-2005-3902
|
| FULLDISC:20051124 MailEnable IMAP DOS |
CVE-2005-3813
|
| FULLDISC:20051125 SEC Consult SA-20051125-0 :: More Vulnerabilities in vTiger CRM |
CVE-2005-3820
CVE-2005-3821
CVE-2005-3822
CVE-2005-3823
CVE-2005-3824
|
| FULLDISC:20051130 ZRCSA-200504 - dotclear SQL Injection |
CVE-2005-3963
|
| FULLDISC:20051201 Perl format string integer wrap vulnerability |
CVE-2005-3962
|
| FULLDISC:20051201 WinEggDropShell Multiple Remote Stack Overflow |
CVE-2005-3992
|
| FULLDISC:20051201 [xfocus-SD-051202]openMotif-libUil-Multiple_vulnerability |
CVE-2005-3964
|
| FULLDISC:20051207 Appfluent Batabase IDS Local Root |
CVE-2005-4076
|
| FULLDISC:20051207 Checkpoint SecureClient NGX Security Policy can easily be disabled |
CVE-2005-4093
|
| FULLDISC:20051208 PGP Wipe Free Space, Lyris ListManager Flaws, Windows Timestamps, Sam Juicer |
CVE-2005-4142
CVE-2005-4143
CVE-2005-4144
CVE-2005-4145
CVE-2005-4146
CVE-2005-4147
CVE-2005-4148
CVE-2005-4149
CVE-2005-4151
|
| FULLDISC:20051208 Perl cal XSS Vulnerability |
CVE-2005-4162
|
| FULLDISC:20051208 Re: re: Firefox 1.5 buffer overflow (poc) |
CVE-2005-4134
|
| FULLDISC:20051208 re: Firefox 1.5 buffer overflow (poc) |
CVE-2005-4134
|
| FULLDISC:20051209 [TKPN2005-12-001] Multiple critical vulnerabilities in MyBB |
CVE-2005-4199
|
| FULLDISC:20051211 SEC Consult SA-20051211-0 :: Several XSS issues in Horde Framework, Kronolith Calendar, Mnemo Notes, Nag Tasks and Turba Addressbook |
CVE-2005-4189
|
| FULLDISC:20051213 Secunia Research: Microsoft Internet Explorer Keyboard Shortcut Processing Vulnerability |
CVE-2005-2829
|
| FULLDISC:20051214 Re: iDefense Security Advisory 12.14.05: Trend Micro ServerProtect relay.dll Chunked Overflow Vulnerability |
CVE-2005-1929
|
| FULLDISC:20051215 [scip_Advisory 1910] Alkacon OpenCms 6.0.2 login Cross Site Scripting |
CVE-2005-4294
|
| FULLDISC:20051217 XSS Vuln in PlaySmS |
CVE-2005-4432
|
| FULLDISC:20051217 phpBB 2.0.18 XSS and Full Path Disclosure |
CVE-2005-4357
CVE-2005-4358
|
| FULLDISC:20051219 Authenticated EIGRP DoS / Information leak |
CVE-2005-4437
|
| FULLDISC:20051219 Cerberus Helpdesk vulnerabilities |
CVE-2005-4427
CVE-2005-4428
|
| FULLDISC:20051219 LiveJournal CSS/JS injection vulnerability |
CVE-2005-4454
|
| FULLDISC:20051219 Making unidirectional VLAN and PVLAN jumping bidirectional |
CVE-2005-4440
CVE-2005-4441
|
| FULLDISC:20051219 Remote Buffer Overflow in Mailenable Enterprise |
CVE-2005-4402
|
| FULLDISC:20051219 Unauthenticated EIGRP DoS |
CVE-2002-2208
CVE-2005-4436
|
| FULLDISC:20051219 Unzip *ALL* verisons ;)) |
CVE-2005-4667
|
| FULLDISC:20051219 elogd 2.6.0 overflow |
CVE-2005-4439
|
| FULLDISC:20051220 Enterprise Connector v.1.02 Multiple SQL |
CVE-2005-4563
|
| FULLDISC:20051220 LiveJournal CSS/JS injection vulnerability |
CVE-2005-4454
|
| FULLDISC:20051220 RE: Authenticated EIGRP DoS / Information leak |
CVE-2002-2208
CVE-2005-4436
CVE-2005-4437
|
| FULLDISC:20051220 Vulnerability in Metadot portal server allows users to gain administrative privileges |
CVE-2005-4458
|
| FULLDISC:20051220 [ACSSEC-2005-11-25-0x3] FTGate 4.4 [Build 4.4.000 Oct 26 2005] Cr oss Site Scripting Vulnerability |
CVE-2005-4567
|
| FULLDISC:20051220 [ACSSEC-2005-11-25-0x4] FTGate 4.4 [Build 4.4.000 Oct 26 2005] St ack Buffer Overflow |
CVE-2005-4569
|
| FULLDISC:20051220 [ACSSEC-2005-11-25-0x5] FTGate 4.4 [Build 4.4.000 Oct 26 2005] Fo rmat String Overflow |
CVE-2005-4568
|
| FULLDISC:20051220 [ACSSEC-2005-11-25-0x6] FTGate 4.4 [Build 4.4.000 Oct 26 2005] Fo rmat String Overflow |
CVE-2005-4568
|
| FULLDISC:20051220 [ACSSEC-2005-11-27-0x1] Eudora Qualcomm WorldMail 3.0 IMAP4 Servi ce 6.1.19.0 |
CVE-2005-4267
|
| FULLDISC:20051220 [ACSSEC-2005-11-27-0x2] Remote Overflows in Mailenable Enterprise 1.1 / Professional 1.7 |
CVE-2005-4456
CVE-2005-4457
|
| FULLDISC:20051221 [ACSSEC-2005-11-25-0x1] VMWare Workstation 5.5.0 <= build-18007 G SX Server Variants And Others |
CVE-2005-4459
|
| FULLDISC:20051222 CYBSEC - Security Advisory: httprint Multiple Vulnerabilities |
CVE-2005-4502
CVE-2005-4503
|
| FULLDISC:20051223 SEC Consult SA-20051223-0 :: Multiple Cross Site Scripting Vulnerabilities in OracleAS Discussion Forum Portlet |
CVE-2005-4549
|
| FULLDISC:20051223 SEC Consult SA-20051223-1 :: File Disclosure using df_next_page parameter in OracleAS Discussion Forum Portlet |
CVE-2005-4550
|
| FULLDISC:20051223 html in simpbook |
CVE-2005-4551
|
| FULLDISC:20051223 linux procfs vulnerablity |
CVE-2005-4605
|
| FULLDISC:20051225 Advanced Guestbook remote XSS exploit |
CVE-2005-4649
|
| FULLDISC:20051227 Juniper NSM remote Denial Of Service |
CVE-2005-4587
|
| FULLDISC:20051227 Secunia Research: IceWarp Web Mail Multiple File |
CVE-2005-4556
CVE-2005-4557
CVE-2005-4558
CVE-2005-4559
|
| FULLDISC:20051230 PTnet IRCD heap exhaustion and integer overflow |
CVE-2005-4624
|
| FULLDISC:20060102 Buffer Overflow vulnerability in Windows Display Manager [Suspected] |
CVE-2006-0081
|
| FULLDISC:20060103 Open Xchange XSS |
CVE-2006-0091
|
| FULLDISC:20060103 Re: Buffer Overflow vulnerability in Windows Display Manager [Suspected] |
CVE-2006-0081
|
| FULLDISC:20060103 Re: [Full-disclosure] Buffer Overflow vulnerability in Windows Display Manager [Suspected] |
CVE-2006-0081
|
| FULLDISC:20060104 Rockliffe Directory Transversal Vulnerability |
CVE-2006-0127
CVE-2006-0128
|
| FULLDISC:20060104 Rockliffe Mailsite User Enumeration Flaw |
CVE-2006-0129
CVE-2006-0130
|
| FULLDISC:20060105 Re: Rockliffe Directory Transversal Vulnerability |
CVE-2006-0127
|
| FULLDISC:20060105 Windows PHP 4.x "0-day" buffer overflow |
CVE-2006-0097
|
| FULLDISC:20060106 SimpBook "message" Remote Cross-Site Scripting Vulnerability |
CVE-2006-0149
|
| FULLDISC:20060108 RE: Windows PHP 4.x "0-day" buffer overflow |
CVE-2006-0097
|
| FULLDISC:20060109 Advisory:XSS vulnerability on WebWiz Forums <= 6.34 (search_form.asp) |
CVE-2006-0175
|
| FULLDISC:20060109 BSD Securelevels: Circumventing protection of files flagged immutable |
CVE-2005-4351
|
| FULLDISC:20060109 Time modification flaw in BSD securelevels on NetBSD and Linux |
CVE-2005-4352
|
| FULLDISC:20060110 AspTopSites SQL injection |
CVE-2006-0184
|
| FULLDISC:20060110 SUID root overflows in UNICOS and partial shellcode |
CVE-2006-0177
CVE-2006-0178
|
| FULLDISC:20060110 [EEYEB-2000801] - Windows Embedded Open Type (EOT) Font Heap Overflow Vulnerability |
CVE-2006-0010
|
| FULLDISC:20060110 mysec.org Security Advisory : Xmame buffer overflow, with a possibility of privilege escalation. |
CVE-2006-0176
|
| FULLDISC:20060111 Updated Advisories - Incorrect CVE Information |
CVE-2005-2340
CVE-2005-3713
|
| FULLDISC:20060111 [CIRT.DK] Apple QuickTime 7.0.3 and earlier - JPG/PICT Buffer Overflow |
CVE-2005-2340
|
| FULLDISC:20060111 [EEYEB-20051031] Apple QuickTime Malformed GIF Heap Overflow |
CVE-2005-3713
|
| FULLDISC:20060111 [EEYEB-20051220] Apple QuickTime QTIF Stack Overflow |
CVE-2005-2340
|
| FULLDISC:20060112 Advisory: MiniNuke CMS System <= 1.8.2 (membership.asp) remote user password change exploit |
CVE-2006-0203
|
| FULLDISC:20060112 Advisory: MiniNuke CMS System <= 1.8.2 (news.asp) SQL Injection vulnerability |
CVE-2006-0199
CVE-2006-0203
|
| FULLDISC:20060112 Fortinet Advisory - Apple QuickTime Player ImageWidth Denial of Service Vulnerability |
CVE-2005-3710
|
| FULLDISC:20060112 Fortinet Advisory - Apple QuickTime Player StripByteCounts Buffer Overflow Vulnerability |
CVE-2005-3711
|
| FULLDISC:20060112 Fortinet Advisory: Apple QuickTime Player Color Map Entry Size Buffer Overflow |
CVE-2005-3709
|
| FULLDISC:20060112 Fortinet Security Advisory: "Apple QuickTime Player Improper Memory Access Vulnerability" |
CVE-2005-3707
|
| FULLDISC:20060112 ZDI-06-001: Clam AntiVirus UPX Unpacking Code Execution Vulnerability |
CVE-2006-0162
|
| FULLDISC:20060113 DMA[2006-0112a] - 'Toshiba Bluetooth Stack Directory Transversal' |
CVE-2006-0212
|
| FULLDISC:20060113 Farmers wife 4.4 sp1 remote SYSTEM access |
CVE-2006-0319
|
| FULLDISC:20060115 EZDatabase Directory Transversal, XSS and Path Disclosure Vulnerability |
CVE-2006-0315
|
| FULLDISC:20060115 Ultimate Auction <=3.67 |
CVE-2006-0217
|
| FULLDISC:20060116 ACT P202S VoIP wireless phone multiple undocumented ports/services |
CVE-1999-0635
CVE-2006-0374
CVE-2006-0375
|
| FULLDISC:20060116 Clipcomm CP-100E VoIP wireless desktop phone open debug service TCP/60023 |
CVE-2006-0305
|
| FULLDISC:20060116 Clipcomm CPW-100E VoIP wireless handset phone open debug service TCP/60023 |
CVE-2006-0305
|
| FULLDISC:20060116 MPM HP-180W VoIP wireless desktop phone undocumented port UDP/9090 |
CVE-2006-0360
|
| FULLDISC:20060116 ZyXel P2000W (Version 2) VoIP wireless phone undocumented port UDP/9090 |
CVE-2006-0302
|
| FULLDISC:20060117 Oracle DBMS - Access Control Bypass in Login |
CVE-2006-0547
|
| FULLDISC:20060118 Fortinet Advisory: BitComet URI Buffer Overflow Vulnerability |
CVE-2006-0339
|
| FULLDISC:20060118 Oracle Database 10g Rel. 1 - SQL Injection in SYS.KUPV$FT |
CVE-2006-0586
|
| FULLDISC:20060118 Oracle Database 10g Rel. 1 - SQL Injection in SYS.KUPV$FT_INT |
CVE-2006-0586
|
| FULLDISC:20060120 RockLiffe MailSite wconsole.dll Denial of Service/Script Injection Vulnerability |
CVE-2006-0341
CVE-2006-0342
|
| FULLDISC:20060123 CAID 33778 - CA iGateway Content-Length Buffer Overflow Vulnerability |
CVE-2005-3653
|
| FULLDISC:20060125 Workaround for unpatched Oracle PLSQL Gateway flaw |
CVE-2006-0435
|
| FULLDISC:20060126 Shareaza Remote Vulnerability |
CVE-2006-0474
|
| FULLDISC:20060126 [Argeniss] Oracle Database Buffer overflows vulnerabilities in public procedures of XDB.DBMS_XMLSCHEMA{_INT} |
CVE-2006-0272
|
| FULLDISC:20060128 -moz-binding CSS property: more XSS fun |
CVE-2006-0496
|
| FULLDISC:20060128 PmWiki Multiple Vulnerabilities |
CVE-2006-0479
|
| FULLDISC:20060128 gnome evolution mail client inline text file DoS issue |
CVE-2006-0528
|
| FULLDISC:20060129 AOL Instant Messenger 5.9.3861 Local Buffer Overrun Vulnerability |
CVE-2006-0629
|
| FULLDISC:20060130 Re: ashnews Cross-Site Scripting Vulnerability |
CVE-2003-1292
CVE-2006-0524
|
| FULLDISC:20060130 ashnews Cross-Site Scripting Vulnerability |
CVE-2006-0524
|
| FULLDISC:20060131 Re: ashnews Cross-Site Scripting Vulnerability |
CVE-2003-1292
CVE-2006-0524
|
| FULLDISC:20060131 ZRCSA-200601: SPIP - Multiple Vulnerabilities |
CVE-2006-0517
|
| FULLDISC:20060201 Fcrontab - memory corruption on heap. |
CVE-2006-0539
|
| FULLDISC:20060202 More on the workaround for the unpatched Oracle PLSQL Gateway flaw |
CVE-2006-0435
|
| FULLDISC:20060202 Outblaze Cross Site Scripting Vulnerability |
CVE-2006-0568
|
| FULLDISC:20060202 Re: Fcrontab - memory corruption on heap. |
CVE-2006-0575
|
| FULLDISC:20060202 The History of the Oracle PLSQL Gateway Flaw |
CVE-2006-0435
|
| FULLDISC:20060202 cPanel Multiple Cross Site Scripting Vulnerability |
CVE-2006-0573
|
| FULLDISC:20060203 Re: cPanel Multiple Cross Site Scripting |
CVE-2006-0533
|
| FULLDISC:20060203 VSR Advisory: IBM Tivoli Access Manager - Web Server Plug-in File Retrieval Vulnerability |
CVE-2006-0513
|
| FULLDISC:20060203 phpBB 2.0.19 Cross Site Request Forgeries and XSS Admin |
CVE-2006-0437
CVE-2006-0438
|
| FULLDISC:20060204 cPanel 10 mime/handle.html XSS Vulnerability |
CVE-2006-0574
|
| FULLDISC:20060206 SECURITY.NNOV: The Bat! 2.x message headers spoofing |
CVE-2006-0630
|
| FULLDISC:20060206 [ Secuobs - Advisory ] Bluetooth : DoS on hcidump |
CVE-2006-0670
|
| FULLDISC:20060206 [Full-disclosure] [ Secuobs - Advisory ] Bluetooth : DoS on |
CVE-2006-0671
|
| FULLDISC:20060207 Re: cPanel Multiple Cross Site Scripting Vulnerability |
CVE-2006-0763
|
| FULLDISC:20060210 [thunkers.net] D-Link Fragmented UDP DoS Vulnerability |
CVE-2005-4723
|
| FULLDISC:20060211 XSS in PlaySMS |
CVE-2005-4432
|
| FULLDISC:20060213 Bypass Fortinet anti-virus using FTP |
CVE-2005-3057
|
| FULLDISC:20060213 URL filter bypass in Fortinet |
CVE-2005-3058
|
| FULLDISC:20060214 XSS and SQL injection in sNews |
CVE-2006-0715
CVE-2006-0716
|
| FULLDISC:20060215 HostAdmin - Remote Command Execution Vulnerability |
CVE-2006-0791
|
| FULLDISC:20060215 Kadu Remote Denial Of Service Fun |
CVE-2006-0768
|
| FULLDISC:20060215 Kyocera Network Printers |
CVE-2006-0788
CVE-2006-0789
|
| FULLDISC:20060215 Web Calendar Pro - Denial of Service SQL Injection Vulnerability |
CVE-2006-0835
|
| FULLDISC:20060215 [ Secuobs - Advisory ] Another kind of DoS on Nokia cell phones |
CVE-2006-0797
|
| FULLDISC:20060215 iUser Ecommerce - Remote Command Execution Vulnerability |
CVE-2006-0854
|
| FULLDISC:20060216 Critical SQL Injection PHPNuke <= 7.8 - Your_Account module |
CVE-2006-0679
|
| FULLDISC:20060216 Password disclosure and remote access in Netcool/NeuSecure Security information management platform |
CVE-2006-0837
CVE-2006-0838
|
| FULLDISC:20060216 Soldier of Fortune II format string through PunkBuster 1.180 |
CVE-2006-0771
|
| FULLDISC:20060217 Mozila Thunderbird 1.5 Address Book DoS |
CVE-2006-0836
|
| FULLDISC:20060219 Multiple vulnerabilities in PostNuke <= 0.761 |
CVE-2006-0800
CVE-2006-0801
CVE-2006-0802
|
| FULLDISC:20060224 Advisory: CilemNews System <= 1.1 Remote SQL |
CVE-2006-0961
|
| FULLDISC:20060224 Advisory: Woltlab Burning Board 2.x (JGS-Gallery MOD <= 4.0) multiple XSS vulnerabilities |
CVE-2006-0927
|
| FULLDISC:20060225 Advisory: Pentacle In-Out Board <= 6.03 (login.asp) Authencation ByPass Vulnerability |
CVE-2006-1000
|
| FULLDISC:20060225 Advisory: Pentacle In-Out Board <= 6.03 (newsdetailsview.asp newsid) Remote SQL Injection Vulnerability |
CVE-2006-1000
|
| FULLDISC:20060225 ArGoSoft FTP server remote heap overflow |
CVE-2005-0696
|
| FULLDISC:20060225 mysql <= 5.0.18 |
CVE-2006-0903
|
| FULLDISC:20060227 directory traversal in DirectContact 0.3b |
CVE-2006-0971
|
| FULLDISC:20060228 Limbo CMS code execution |
CVE-2006-1662
|
| FULLDISC:20060301 NCP VPN/PKI Client - various Bugs |
CVE-2006-0964
CVE-2006-0965
CVE-2006-0966
CVE-2006-0967
CVE-2006-0968
|
| FULLDISC:20060301 Woltlab Burning Board 2.x (Datenbank MOD fileid) MultipleVulnerabilities |
CVE-2006-1097
|
| FULLDISC:20060307 Multiple vulnerabilities in Alien Arena 2006 GE 5.00 |
CVE-2006-1145
CVE-2006-1146
CVE-2006-1147
|
| FULLDISC:20060307 RevilloC mail server USER command heap overflow |
CVE-2006-1124
|
| FULLDISC:20060307 capi4hylafax insecure manipulation with tmp files |
CVE-2006-1231
|
| FULLDISC:20060307 phpBannerExchange 2.0 Directory Traversal Vulnerability |
CVE-2006-1201
|
| FULLDISC:20060308 Noah's Classifieds Multiple Cross-Site Scripting Vulnerabilities |
CVE-2006-1331
|
| FULLDISC:20060309 Advisory: Jiros Banner Experience Pro Remote Privilege Escalation. |
CVE-2006-1213
|
| FULLDISC:20060310 WinSCP - URI Handler Command Switch Parsing |
CVE-2006-3015
|
| FULLDISC:20060311 AntiVir PersonalEdition Classic: Local Privilige Escalation |
CVE-2006-1274
|
| FULLDISC:20060312 Buffer Overflow and Installation Script Error in Firebird 1.5.3 |
CVE-2006-1240
CVE-2006-1241
|
| FULLDISC:20060312 Multiple vulnerabilities in ENet library (Jul 2005) |
CVE-2006-1194
CVE-2006-1195
|
| FULLDISC:20060312 [INetCop Security Advisory] zeroboard IP session bypass XSS vulnerability |
CVE-2006-1222
|
| FULLDISC:20060313 Secunia Research: unalz Filename Handling |
CVE-2006-0950
|
| FULLDISC:20060314 CodeScan Advisory: Multiple Vulnerabilities In ASPPortal.net |
CVE-2006-1261
CVE-2006-1262
|
| FULLDISC:20060314 [xfocus-SD-060314]Microsoft Office Excel Buffer Overflow Vulnerability |
CVE-2006-0031
|
| FULLDISC:20060315 CodeScan Advisory: Unauthenticated Arbitrary File Read in Horde v3.09 and prior |
CVE-2006-1260
|
| FULLDISC:20060316 Mercur IMAPD 5.0 SP3 DoS Exploit or more? |
CVE-2006-1255
|
| FULLDISC:20060316 Re: Mercur IMAPD 5.0 SP3 DoS Exploit or more? |
CVE-2006-1255
|
| FULLDISC:20060320 [MU-200603-01] MailEnable POP3 Pre-Authentication Buffer Overflow |
CVE-2006-1337
CVE-2006-6997
|
| FULLDISC:20060320 [SSAG#001] :: cURL tftp:// URL Buffer Overflow |
CVE-2006-1061
|
| FULLDISC:20060321 ASPPortal <= 3.1.1 Multiple Remote SQL Injection Vulnerabilities |
CVE-2006-1353
|
| FULLDISC:20060321 DMA[2006-0321a] - 'Motorola P2K Platform setpath() overflow and Blueline attack' |
CVE-2006-1366
CVE-2006-1367
|
| FULLDISC:20060321 IE .hta vulnerability reported |
CVE-2006-1388
|
| FULLDISC:20060322 FW: [Full-disclosure] IE crash |
CVE-2006-1359
|
| FULLDISC:20060322 IE crash |
CVE-2006-1359
|
| FULLDISC:20060322 Microsoft Internet Explorer (mshtml.dll) - Remote Code Execution |
CVE-2006-1359
|
| FULLDISC:20060322 Re: [SPAM:] - ASPPortal <= 3.1.1 Multiple Remote SQL Injection Vulnerabilities - Email has different SMTP TO: and MIME TO: fields in the email addresses |
CVE-2006-1353
|
| FULLDISC:20060322 w3wp remote DoS |
CVE-2006-1364
|
| FULLDISC:20060322 w3wp remote DoS due to improper reference of STA COM components in ASP.NET |
CVE-2006-1364
|
| FULLDISC:20060323 Advisory 03/2006: KisMAC Cisco Vendor Tag Encapsulated SSID Overflow |
CVE-2006-1385
|
| FULLDISC:20060323 Secunia Research: Orion Application Server JSP Source Disclosure Vulnerability |
CVE-2006-0816
|
| FULLDISC:20060323 XOR Crew :: vBulletin ImpEx <= 1.74 - Remote Command Execution Vulnerability |
CVE-2006-1382
|
| FULLDISC:20060327 Buffer OverFlow in ILASM and ILDASM |
CVE-2006-1510
CVE-2006-1511
|
| FULLDISC:20060327 Determina Fix for the IE createTextRange() bug |
CVE-2006-1359
|
| FULLDISC:20060327 HYSA-2006-007 phpmyfamily 1.4.1 CRLF injection & XSS |
CVE-2006-1425
|
| FULLDISC:20060329 ExplorerXP : Directory Traversal and Cross Site Scripting |
CVE-2006-1492
CVE-2006-1493
|
| FULLDISC:20060329 EzASPSite <= 2.0 RC3 Remote SQL Injection Exploit Vulnerability. |
CVE-2006-1541
|
| FULLDISC:20060329 [xfocus-SD-060329]MPlayer: Multiple integer overflows |
CVE-2006-1502
|
| FULLDISC:20060331 Buffer-overflow and in-game crash in Zdaemon 1.08.01 |
CVE-2006-1592
CVE-2006-1593
|
| FULLDISC:20060331 Claroline <= 1.7.4 (scormExport.inc.php) Remote Code Execution Exploit by rgod |
CVE-2006-1596
|
| FULLDISC:20060331 Re: [Full-disclosure] Claroline <= 1.7.4 (scormExport.inc.php) Remote Code Execution Exploit by rgod |
CVE-2006-1595
|
| FULLDISC:20060331 Windows Help Heap Overflow |
CVE-2006-1591
|
| FULLDISC:20060403 Format string in Doomsday 1.8.6 |
CVE-2006-1618
|
| FULLDISC:20060404 Buffer-overflow in Ultr@VNC 1.0.1 viewer and server |
CVE-2006-1652
|
| FULLDISC:20060404 [SEC-1 LTD] HP Colour LaserJet 2500 and 4600 Toolbox Directory Traversal Vulnerability |
CVE-2006-1654
|
| FULLDISC:20060410 Oracle read-only user can insert/update/delete data via specially crafted views |
CVE-2006-1705
|
| FULLDISC:20060410 [MU-200604-01] Cyrus SASL DIGEST-MD5 Pre-Authentication Denial of Service |
CVE-2006-1721
|
| FULLDISC:20060411 Autogallery Multiple Cross-Site Scripting Vulnerabilitie |
CVE-2006-1750
|
| FULLDISC:20060411 JetPhoto Multiple Cross-Site Scripting Vulnerabilitie |
CVE-2006-1760
|
| FULLDISC:20060411 ZDI-06-007: Microsoft Windows Address Book (WAB) File Format Parsing Vulnerability |
CVE-2006-0014
|
| FULLDISC:20060413 PAJAX Remote Code Injection and File Inclusion Vulnerability |
CVE-2006-1789
|
| FULLDISC:20060413 PAJAX Remote file inclusion and File Inclusion Vulnerability |
CVE-2006-1551
|
| FULLDISC:20060413 SEC Consult SA-20060314 :: Opera Browser CSS Attribute Integer Wrap / Buffer Overflow |
CVE-2006-1834
|
| FULLDISC:20060416 BetaBoard Cross Site Scripting vulnerability |
CVE-2006-1891
|
| FULLDISC:20060418 Re: Fortinet28 box does not resist has small synflood! |
CVE-2006-1966
|
| FULLDISC:20060418 SQL Injection in package SYS.DBMS_LOGMNR_SESSION |
CVE-2006-1871
|
| FULLDISC:20060420 Dr.Web 4.33 antivirus LHA long directory name heap overflow |
CVE-2006-4438
|
| FULLDISC:20060420 Sql Injection in BookMark4u |
CVE-2006-7025
|
| FULLDISC:20060421 Advisory: CoreNews <= 2.0.1 Multiple Remote Vulnerabilities. |
CVE-2006-2032
CVE-2006-2033
|
| FULLDISC:20060421 dForum <= 1.5 Multiple Remote File Inclusion Vulnerabilities. |
CVE-2006-1994
|
| FULLDISC:20060422 Re: MSIE (mshtml.dll) OBJECT tag vulnerability |
CVE-2006-1992
|
| FULLDISC:20060423 MSIE (mshtml.dll) OBJECT tag vulnerability |
CVE-2006-1992
|
| FULLDISC:20060423 RE: Advisory: Simplog <= 0.93 Multiple Remote Vulnerabilities. |
CVE-2006-2028
CVE-2006-2029
|
| FULLDISC:20060424 Apple Mac OS X Safari 2.0.3 Vulnerability |
CVE-2006-2019
|
| FULLDISC:20060426 Internet Explorer User Interface Races, Redeux |
CVE-2006-2094
|
| FULLDISC:20060427 PoC for Internet Explorer Modal Dialog Issue |
CVE-2006-2094
|
| FULLDISC:20060503 BankTown's ActiveX Buffer Overflow Vulnerability |
CVE-2006-2233
|
| FULLDISC:20060504 bigwebmaster guestbook multiply XSS |
CVE-2006-2231
|
| FULLDISC:20060505 phpBB 2.0.20 Full Path Disclosure and SQL Errors |
CVE-2006-2219
CVE-2006-2220
|
| FULLDISC:20060507 Multiple Vulnerabilities In IdealBB ASP Bulletin Board |
CVE-2006-2317
|
| FULLDISC:20060507 [XPA] - ISPConfig <= 2.2.2 - Remote Command Execution Vulnerability |
CVE-2006-2315
|
| FULLDISC:20060508 Claroline file inclusion vulnerabilities |
CVE-2006-7048
|
| FULLDISC:20060508 Multiple Vulnerabilities In IdealBB ASP Bulletin Board |
CVE-2006-2318
CVE-2006-2319
|
| FULLDISC:20060508 Two independent vulnerabilities (client and server side) in Quake3 engine and many derived games |
CVE-2006-2082
|
| FULLDISC:20060508 VSR Advisory: WebSense content filter bypass when deployed in conjunction with Cisco filtering devices |
CVE-2006-0515
|
| FULLDISC:20060508 ZDI-06-012: Sophos Anti-Virus CAB Unpacking Code Execution Vulnerability |
CVE-2006-0994
|
| FULLDISC:20060508 [MU-200605-01] Multiple vulnerabilities in Linux SCTP 2.6.16 |
CVE-2006-2271
CVE-2006-2272
|
| FULLDISC:20060509 ICQ Client Cross-Application Scripting (XAS) |
CVE-2006-2303
|
| FULLDISC:20060509 [EEYEB20051011A] - Microsoft Distributed Transaction Coordinator Heap Overflow |
CVE-2006-0034
|
| FULLDISC:20060510 Microsoft MSDTC NdrAllocate Validation Vulnerability |
CVE-2006-0034
|
| FULLDISC:20060511 Several flaws in e-business designer (eBD) |
CVE-2006-2347
CVE-2006-2348
CVE-2006-2349
|
| FULLDISC:20060512 Apple QuickTime udta ATOM Heap Overflow |
CVE-2006-1460
|
| FULLDISC:20060512 Buffer-overflow and NULL pointer crash in Genecys 0.2 |
CVE-2006-2554
CVE-2006-2555
|
| FULLDISC:20060514 POC exploit for freeSSHd version 1.0.9 |
CVE-2006-2407
|
| FULLDISC:20060515 Novell NDPS Remote Vulnerability (Server & Client) |
CVE-2006-2304
CVE-2006-2327
|
| FULLDISC:20060515 RealVNC 4.1.1 Remote Compromise |
CVE-2006-2369
|
| FULLDISC:20060515 Secunia Research: Abakt ZIP File Handling Buffer |
CVE-2006-2161
|
| FULLDISC:20060516 Advisory: Quezza BB <= 1.0 File Inclusion Vulnerability. |
CVE-2006-2485
|
| FULLDISC:20060516 ScanAlert Security Advisory |
CVE-2006-2437
CVE-2006-2438
|
| FULLDISC:20060517 HYSA-2006-008 myBloggie 2.1.3 CRLF & SQL Injection |
CVE-2006-3903
CVE-2006-3905
|
| FULLDISC:20060518 CYBSEC - Security Pre-Advisory: Local Privilege Escalation in SAP sapdba Command |
CVE-2006-2547
|
| FULLDISC:20060518 Multiple Vulns in Bitrix CMS |
CVE-2006-2476
CVE-2006-2478
|
| FULLDISC:20060519 Apple Safari 2.0.3 (417.9.3) JavaScript - Denial of Service |
CVE-2006-3224
|
| FULLDISC:20060521 Cyrus IMAPD pop3d remote compromise aka cyrusFUCK3d |
CVE-2006-2502
|
| FULLDISC:20060521 Skype - URI Handler Command Switch Parsing |
CVE-2006-2312
|
| FULLDISC:20060521 [TZO-072006]-Xampp - Multiple Priviledge Escalation (SYSTEM) and Rogue Autostarthttp |
CVE-2006-4994
|
| FULLDISC:20060522 Perlpodder Remote Arbitrary Command Execution |
CVE-2006-2550
|
| FULLDISC:20060522 Prodder Remote Arbitrary Command Execution |
CVE-2006-2548
|
| FULLDISC:20060523 Buffer-overflow in the WebTool service of PunkBuster for servers (minor than v1.229) |
CVE-2006-2587
|
| FULLDISC:20060523 VSR Advisory: PDF Tools AG - PDF Form Filling and Flattening Tool Overflow |
CVE-2006-2549
|
| FULLDISC:20060526 ZH2006-20 SA: CosmicShoppingCart Multiple Vulnerabilities |
CVE-2006-2649
CVE-2006-2650
|
| FULLDISC:20060526 new symantec vuln |
CVE-2006-2630
|
| FULLDISC:20060528 *zeroday warez* MDAEMON LATEST VERSION PREAUTH |
CVE-2006-2646
|
| FULLDISC:20060528 Advisory: phpBB 2.x (Activity MOD Plus) File Inclusion Vulnerability. |
CVE-2006-2735
|
| FULLDISC:20060529 Jiwa Financials - Reporting allows execution of arbitrary reports as SQL user with full permissions. |
CVE-2006-2718
CVE-2006-2719
|
| FULLDISC:20060531 GnuPG fun |
CVE-2006-3082
|
| FULLDISC:20060531 RE: GnuPG fun |
CVE-2006-3082
|
| FULLDISC:20060601 Joomla/Mambo CMS Component SimpleBoard 1.1 XSS-Vulnerabilities |
CVE-2006-2815
|
| FULLDISC:20060601 Re: GnuPG fun |
CVE-2006-3082
|
| FULLDISC:20060605 Advisory 04/2006: DokuWiki PHP code execution vulnerability in spellchecker |
CVE-2006-2878
|
| FULLDISC:20060605 file upload widgets in IE and Firefox have issues |
CVE-2006-2894
CVE-2006-2900
|
| FULLDISC:20060607 MDaemon NOT vulnerable .. sorry for the advisory.. QBik Wingate is vulnerable |
CVE-2006-2926
|
| FULLDISC:20060607 [HV-LOW] Microsoft NetMeeting memory corruption (Brief) |
CVE-2006-2919
|
| FULLDISC:20060608 SSL VPNs and security |
CVE-2009-2631
|
| FULLDISC:20060609 Re: SSL VPNs and security |
CVE-2009-2631
|
| FULLDISC:20060611 WinSCP - URI Handler Command Switch Parsing |
CVE-2006-3015
|
| FULLDISC:20060611 tempnam() Bypass unique file name PHP 5.1.4 |
CVE-2006-2660
|
| FULLDISC:20060614 SEC Consult SA-20060613-0 :: Outlook Web Access Cross Site Scripting Vulnerability |
CVE-2006-1193
|
| FULLDISC:20060614 Sun iPlanet Messaging Server 5.2 root password compromise |
CVE-2006-3159
|
| FULLDISC:20060615 Advisory: Authentication bypass in phpBannerExchange |
CVE-2006-3012
|
| FULLDISC:20060615 Advisory: Unauthorized password recovery in phpBannerExchange |
CVE-2006-3013
|
| FULLDISC:20060615 MySQL DoS |
CVE-2006-3081
|
| FULLDISC:20060616 Zeroboard File Upload & extension bypass Vulnerability |
CVE-2006-3070
|
| FULLDISC:20060618 ***ULTRALAME*** Microsoft Excel Unicode Overflow |
CVE-2006-3086
|
| FULLDISC:20060619 Input Validation/Output Encoding Vulnerabilities in Cisco CallManager Allow Script Injection Attacks |
CVE-2006-3109
|
| FULLDISC:20060620 Microsoft Excel File Embedded Shockwave Flash Object Exploit |
CVE-2006-3014
|
| FULLDISC:20060620 Re: Input Validation/Output Encoding Vulnerabilities in Cisco CallManager Allow Script Injection Attacks |
CVE-2006-3109
|
| FULLDISC:20060622 [MU-200606-01] Real Helix RTSP Server Heap Corruption Vulnerabilities |
CVE-2006-3276
|
| FULLDISC:20060623 NDSD-06-001 |
CVE-2006-3275
|
| FULLDISC:20060625 Is Windows TCP/IP source routing PoC code available? |
CVE-2006-2379
|
| FULLDISC:20060627 CAID 34325 - CA ITM, eAV, ePP scan job description field format string vulnerability |
CVE-2006-3223
|
| FULLDISC:20060627 IE_ONE_MINOR_ONE_MAJOR |
CVE-2006-3280
CVE-2006-3281
|
| FULLDISC:20060627 ZDI-06-019: GraceNote CDDBControl ActiveX Buffer Overflow Vulnerability |
CVE-2006-3134
|
| FULLDISC:20060629 Multiple Vulnerabilities in PatchLink Update Server 6 |
CVE-2006-3425
CVE-2006-3426
CVE-2006-3430
|
| FULLDISC:20060629 Secunia Research: phpRaid SQL Injection and File Inclusion Vulnerabilities |
CVE-2006-3116
CVE-2006-3317
|
| FULLDISC:20060630 NCP VPN/PKI Client: UDP Bypassing |
CVE-2006-3551
|
| FULLDISC:20060704 [scip_Advisory 2351] Kyberna AG ky2help various form fields SQL Injection |
CVE-2006-3541
|
| FULLDISC:20060704 [scip_Advisory 2352] F5 FirePass 4100 prior 6.x multiple Cross Site Scripting |
CVE-2006-3550
|
| FULLDISC:20060705 Public Advisory: Horde 3.1.1, 3.0.10 Multiple Security Issues |
CVE-2006-3548
|
| FULLDISC:20060705 Re: phpSysInfo arbitrary file identification |
CVE-2006-3360
|
| FULLDISC:20060705 phpSysInfo arbitrary file identification |
CVE-2006-3360
|
| FULLDISC:20060706 Mico crashes when contected with wrong IOR / DoS |
CVE-2006-3492
|
| FULLDISC:20060706 Possible code execution in Kaillera 0.86 |
CVE-2006-3491
|
| FULLDISC:20060707 MS Word Unchecked Boundary Condition |
CVE-2006-3493
|
| FULLDISC:20060707 MS Word Unchecked Boundary Condition Vulnerability - POC |
CVE-2006-3493
|
| FULLDISC:20060708 Unauthenticated access to BT Voyager config file |
CVE-2006-3561
|
| FULLDISC:20060710 ERNW Security Advisory 02/2006 - Buffer Overflow in sipXtapi (used in AOL Triton) |
CVE-2006-3524
|
| FULLDISC:20060710 MIMESweeper For Web 5.X Cross Site Scripting |
CVE-2006-3522
|
| FULLDISC:20060710 RE: MIMESweeper For Web 5.X Cross Site Scripting |
CVE-2006-3522
|
| FULLDISC:20060710 Re: MIMESweeper For Web 5.X Cross Site Scripting |
CVE-2006-3522
|
| FULLDISC:20060711 CYBSEC - Security Pre-Advisory: Microsoft Windows DHCP Client Service Remote Buffer Overflow |
CVE-2006-2372
|
| FULLDISC:20060711 ERNW Security Advisory 02/2006 - Buffer Overflow in sipXtapi (used in AOL Triton) |
CVE-2006-3524
|
| FULLDISC:20060711 Fuzzing Microsoft Office |
CVE-2006-3493
|
| FULLDISC:20060711 [SECURITY] Plain text password in Finjan Appliance 5100/8100 NG backup file |
CVE-2006-3663
|
| FULLDISC:20060712 Microsoft Excel Could Allow Remote Code Execution by Malformed FNGROUPCOUNT value Vulnerability |
CVE-2006-1308
|
| FULLDISC:20060712 S21Sec-032-en: Vulnerability in Fatwire Content Server |
CVE-2006-3679
|
| FULLDISC:20060714 Linux kernel 0day - dynamite inside, don't burn your fingers |
CVE-2006-3626
|
| FULLDISC:20060717 [EEYEB-20060227] D-Link Router UPNP Stack Overflow |
CVE-2006-3687
|
| FULLDISC:20060718 Advisory : DeluxeBB mutiple vulnerabilities |
CVE-2006-3795
CVE-2006-3796
CVE-2006-3797
CVE-2006-3798
CVE-2006-3799
|
| FULLDISC:20060718 Oracle Database - SQL Injection in SYS.DBMS_STATS [DB21] |
CVE-2006-3705
|
| FULLDISC:20060718 Oracle Database - SQL Injection in SYS.DBMS_UPGRADE [DB22] |
CVE-2006-3705
|
| FULLDISC:20060718 Oracle Database - SQL Injection in SYS.KUPW$WORKER [DB03] |
CVE-2006-3698
|
| FULLDISC:20060718 WebScarab <= 20060621-0003 cross site scripting |
CVE-2006-3841
|
| FULLDISC:20060719 Multiple Vulnerabilities RPS |
CVE-2006-7082
CVE-2006-7083
CVE-2006-7085
|
| FULLDISC:20060720 Advisory: Remote command execution in planetGallery |
CVE-2006-3676
|
| FULLDISC:20060720 Cisco MARS < 4.2.1 remote compromise |
CVE-2005-2006
CVE-2006-3733
|
| FULLDISC:20060721 Directory Listing in Apache Tomcat 5.x.x |
CVE-2006-3835
|
| FULLDISC:20060722 Low security hole affecting IPCalc's CGI wrapper |
CVE-2006-3848
|
| FULLDISC:20060724 Hustle -- Tumbleweed Email Firewall Remote |
CVE-2006-3901
|
| FULLDISC:20060725 Professional Home Page Tools Login Script Cross Site Scripting Vulnerabilities |
CVE-2006-7078
|
| FULLDISC:20060725 TP-Book <= 1.00 Cross Site Scripting |
CVE-2006-3900
|
| FULLDISC:20060725 [vuln.sg] AGEphone "sipd.dll" SIP Packet Handling Buffer Overflow |
CVE-2006-4029
|
| FULLDISC:20060727 Oracle 10g R2 and, probably, all previous versions |
CVE-2006-7067
|
| FULLDISC:20060728 Apache 1.3.29/2.X mod_rewrite Buffer Overflow Vulnerability CVE-2006-3747 |
CVE-2006-3747
|
| FULLDISC:20060728 Oracle 10g R2 and, probably, all previous versions |
CVE-2006-7067
|
| FULLDISC:20060728 [Announcement] Apache HTTP Server 2.2.3 (2.0.59, 1.3.37) Released |
CVE-2006-3747
|
| FULLDISC:20060729 Ajax Chat Multiple Vulnerabilities |
CVE-2006-3971
CVE-2006-3972
|
| FULLDISC:20060729 X-Poll SQL Injection Vulnerability |
CVE-2006-3960
|
| FULLDISC:20060729 X-Statics 1.20 SQL Injection Vulnerability |
CVE-2006-3950
|
| FULLDISC:20060730 Banex Multiple Vulnerabilities |
CVE-2006-3963
CVE-2006-3964
CVE-2006-3965
|
| FULLDISC:20060802 Content Management Framework "G3" - XSS Vulnerability in Search Function |
CVE-2006-4017
|
| FULLDISC:20060803 GaesteChaos <= 0.2 Multiple Vulnerabilities |
CVE-2006-4038
CVE-2006-4039
|
| FULLDISC:20060803 GeheimChaos <= 0.5 Multiple SQL Injection |
CVE-2006-4118
|
| FULLDISC:20060804 Barracuda Spam Firewall: Administrator Level Remote Command Execution [ID-20060804-01] |
CVE-2006-4081
CVE-2006-4082
|
| FULLDISC:20060804 PHPCodeCabinet Vulnerability |
CVE-2006-4044
|
| FULLDISC:20060804 linksys WRT54g authentication bypass |
CVE-2006-5202
|
| FULLDISC:20060806 0-day XP SP2 wmf exploit |
CVE-2006-4071
|
| FULLDISC:20060806 PHP: Zend_Hash_Del_Key_Or_Index Vulnerability |
CVE-2006-3017
|
| FULLDISC:20060806 bugs |
CVE-2006-7065
|
| FULLDISC:20060807 0-day XP SP2 wmf exploit (some details) |
CVE-2006-4071
|
| FULLDISC:20060808 [ISR] - Novell Groupwise Webaccess (Cross-Site Scripting) |
CVE-2006-3817
|
| FULLDISC:20060809 Multiple buffer-overflows in AlsaPlayer 0.99.76 |
CVE-2006-4089
|
| FULLDISC:20060809 PocketPC MMS - Remote Code Injection/Execution Vulnerability and Denial-of-Service |
CVE-2006-4131
CVE-2006-4132
|
| FULLDISC:20060809 SmartSiteCMS v1.0 authentication bypass |
CVE-2006-7074
|
| FULLDISC:20060810 CYBSEC - Security Pre-Advisory: SAP Internet Graphics Service (IGS) |
CVE-2006-4134
|
| FULLDISC:20060811 rPSA-2006-0152-1 squirrelmail |
CVE-2006-4019
|
| FULLDISC:20060816 ASSP get?file Traversal Vulnerability |
CVE-2006-4258
|
| FULLDISC:20060821 TTG0601 - Alt-N WebAdmin Multiple Vulnerabilities |
CVE-2006-4370
CVE-2006-4371
|
| FULLDISC:20060822 Linux Kernel SCTP Privilege Elevation Vulnerability |
CVE-2006-3745
|
| FULLDISC:20060822 Major updates in PowerPoint FAQ document - not a 0-day issue |
CVE-2006-0009
CVE-2006-4274
|
| FULLDISC:20060822 [vuln.sg] Cool Messenger Server SQL Injection Vulnerability |
CVE-2006-4347
|
| FULLDISC:20060824 Advisory 05/2006: Zend Platform Multiple Remote |
CVE-2006-4431
|
| FULLDISC:20060824 Integramod Portal <= 2.x File Inclusion |
CVE-2006-4368
CVE-2006-4369
|
| FULLDISC:20060824 VistaBB <= 2.x Multiple File Inclusion |
CVE-2006-4365
|
| FULLDISC:20060825 ftpd chdir() while root |
CVE-2006-5778
|
| FULLDISC:20060829 XSS in HLStats 1.34 |
CVE-2006-4454
|
| FULLDISC:20060831 Lyris ListManager 8.95: Add arbitrary administrator to arbitrary list |
CVE-2006-4546
CVE-2006-4547
|
| FULLDISC:20060905 Buffer overflow vulnerability in dsocks |
CVE-2006-4611
|
| FULLDISC:20060911 KorviBlog - XSS permanent |
CVE-2006-4718
|
| FULLDISC:20060911 PHProg : Local File Inclusion + XSS + Full path |
CVE-2006-4753
CVE-2006-4754
|
| FULLDISC:20060911 vCAP calendar server Multiple vulnerabilities |
CVE-2006-5033
CVE-2006-5034
|
| FULLDISC:20060912 Session Token Remains Valid After Logout in IBM Lotus Domino Web Access |
CVE-2006-4763
|
| FULLDISC:20060913 NetPerformer FRAD ACT Multiple Vulnerabilities |
CVE-2006-4832
CVE-2006-4833
|
| FULLDISC:20060913 [NETRAGARD-20060822 SECURITY ADVISORY] [ APPLE COMPUTER CORPORATION KEXTLOAD VULNERABILITY + ROXIO TOAST TITANUM 7 HELPER APP - LOCAL ROOT COMROMISE] |
CVE-2004-1398
CVE-2006-4866
|
| FULLDISC:20060919 New PowerPoint 0-day Trojan in the wild |
CVE-2006-0009
CVE-2006-4854
|
| FULLDISC:20060920 A.I-Pifou (Cookie) Local File Inclusion |
CVE-2006-4914
|
| FULLDISC:20060921 FiWin SS28S WiFi VoIP SIP/Skype Phone Hardcoded Telnet user/pass and debug access |
CVE-2006-5038
|
| FULLDISC:20060921 RSA Keyon Log verification bypass vulnerability |
CVE-2006-4991
|
| FULLDISC:20060924 Remote File Include in syntaxCMS |
CVE-2006-5055
|
| FULLDISC:20060925 Typo3 v4.x: XSS in extension "Indexed Search" |
CVE-2006-5069
|
| FULLDISC:20060928 [SECURITY] OpenSSL 0.9.8d and 0.9.7l released |
CVE-2006-2937
CVE-2006-2940
CVE-2006-3738
CVE-2006-4343
|
| FULLDISC:20061001 IBM Informix Dynamic Server V10.0 File Clobbering during Install |
CVE-2006-5163
|
| FULLDISC:20061002 IE UXSS (Universal XSS in IE, was Re: Microsoft Internet Information Services UTF-7 XSS Vulnerability [MS06-053]) |
CVE-2006-5152
|
| FULLDISC:20061002 McAfee EPO Buffer Overflow |
CVE-2006-5156
|
| FULLDISC:20061002 Re: [Full-disclosure] IE UXSS (Universal XSS in IE, was Re: Microsoft Internet Information Services UTF-7 XSS Vulnerability [MS06-053]) |
CVE-2006-5152
|
| FULLDISC:20061003 Advisory 08/2006: PHP open_basedir Race Condition Vulnerability |
CVE-2006-5178
|
| FULLDISC:20061003 [CAID 34661]: CA Unicenter WSDM File System Read Access Vulnerability |
CVE-2004-2478
|
| FULLDISC:20061004 (0-Day) PolyCom IP-301 VoIP Desktop Phone HTTP server DoS and undocumented TCP port 42 |
CVE-2006-5233
|
| FULLDISC:20061004 (0-day) Linksys SPA-921 VoIP Desktop Phone HTTP Server DoS |
CVE-2006-7121
|
| FULLDISC:20061005 (0-Day) GrandStream GXP-2000 VoIP Desktop Phone multiple undocumented UDP ports and DoS |
CVE-2006-5231
|
| FULLDISC:20061006 Secunia Research: HAURI Anti-Virus ALZ Archive Handling Buffer Overflow |
CVE-2005-4786
|
| FULLDISC:20061008 SQL injection - moodle |
CVE-2006-5219
|
| FULLDISC:20061009 eXpBlog <= 0.3.5 Cross Site Scripting |
CVE-2006-5239
|
| FULLDISC:20061011 MHL-2006-002 Public Advisory: "Call-Center-Software" Multiple Security Issues |
CVE-2006-7143
CVE-2006-7144
CVE-2006-7145
|
| FULLDISC:20061011 MS06-060 Microsoft Word Memmove Code Execution |
CVE-2006-3647
|
| FULLDISC:20061012 Google Earth (kml & kmz files) buffer overflow |
CVE-2006-7157
|
| FULLDISC:20061012 XeoPort <= 0.81 SQL Injection Vulnerability |
CVE-2006-5285
|
| FULLDISC:20061012 Xeobook <= 0.93 Multiple SQL Injection |
CVE-2006-5287
|
| FULLDISC:20061014 Kmail <= 1.9.1 (table/frameset) DOS |
CVE-2006-7139
|
| FULLDISC:20061014 Re: Vuln |
CVE-2006-7105
|
| FULLDISC:20061014 Vuln |
CVE-2006-7105
|
| FULLDISC:20061015 ISS BlackICE PC Protection Filelock protection bypass Vulnerability |
CVE-2006-7129
|
| FULLDISC:20061016 Asbru HardCore Web Content Editor - Command Injection |
CVE-2006-5258
|
| FULLDISC:20061018 Asterisk remote heap overflow |
CVE-2006-5444
|
| FULLDISC:20061018 [MU-200610-01] Denial of Service in XORP OSPFv2 |
CVE-2006-5425
|
| FULLDISC:20061018 shttpd long get request vuln ( retro ) |
CVE-2006-5216
|
| FULLDISC:20061019 Advisory 11/2006: Serendipity Weblog XSS Vulnerabilities |
CVE-2006-5499
|
| FULLDISC:20061022 AROUNDMe 0.6.9 remonte file inclusion |
CVE-2006-5533
|
| FULLDISC:20061023 SQL Injection Vulnerability in Oracle WWV_FLOW_UTILITIES |
CVE-2006-7138
|
| FULLDISC:20061024 Yahoo! Messenger Service 18 Remote Buffer Overflow Vulnerability |
CVE-2006-5563
|
| FULLDISC:20061024 [vuln.sg] CruiseWorks Directory Traversal and Buffer Overflow Vulnerabilities |
CVE-2006-5570
CVE-2006-5571
|
| FULLDISC:20061025 FTPXQ Denial of service exploit. |
CVE-2006-5568
|
| FULLDISC:20061026 Re: Yahoo! Messenger Service 18 Remote Buffer Overflow Vulnerability |
CVE-2006-5563
|
| FULLDISC:20061027 MHL-2006-003 Public Advisory: "ezOnlineGallery" Multiple Security Issues |
CVE-2006-7103
|
| FULLDISC:20061027 parallels Desktop file permission notice |
CVE-2006-5817
|
| FULLDISC:20061028 ZDI-06-035: Novell eDirectory NDS Server Host Header Buffer Overflow Vulnerability |
CVE-2006-5478
|
| FULLDISC:20061030 Firefox <= 2.0 crash |
CVE-2006-5633
|
| FULLDISC:20061031 Cross Site Scripting (XSS) Vulnerability in Netquery by "VIRtech" |
CVE-2006-5661
|
| FULLDISC:20061031 Cross Site Scripting (XSS) Vulnerability in Web Mail platform by "Mirapoint" |
CVE-2006-5712
|
| FULLDISC:20061031 Cross Site Scripting (XSS) Vulnerability in iPlanet Messaging Server Messenger Express by "Sun" |
CVE-2006-5652
|
| FULLDISC:20061031 Directory listing on B-FOCuS Wireless 802.11b/g ADSL2+ Router by "ECI Telecom LTD" |
CVE-2006-5711
|
| FULLDISC:20061031 Local Heap OverFlow Vulnerability in "Answering Service" of Icq |
CVE-2006-5724
|
| FULLDISC:20061104 [x0n3-h4ck.org] Essentia Web Server 2.15 Buffer Overflow |
CVE-2006-5850
|
| FULLDISC:20061107 DigiOz Guestbook version 1.7 Path Disclosure |
CVE-2006-5651
|
| FULLDISC:20061107 WFTPD Pro Server 3.23 Buffer Overflow |
CVE-2006-5826
|
| FULLDISC:20061108 DMA[2006-1031a] - 'Intego VirusBarrier X4 definition bypass exploit' |
CVE-2006-5916
|
| FULLDISC:20061108 WFTPD Pro Server 3.23 Buffer Overflow |
CVE-2006-5826
|
| FULLDISC:20061112 ELOG Web Logbook Remote Denial of Service Vulnerability |
CVE-2006-6318
|
| FULLDISC:20061113 AVG Anti-Virus - Arbitrary Code Execution (remote) |
CVE-2006-5937
CVE-2006-5938
CVE-2006-5939
CVE-2006-5940
|
| FULLDISC:20061114 Advisory 14/2006: Dotdeb PHP Email Header Injection Vulnerability |
CVE-2006-7087
|
| FULLDISC:20061115 Links smbclient command execution |
CVE-2006-5925
|
| FULLDISC:20061115 NetBSD all versions FireWire IOCTL kernel integer overflow information disclousure |
CVE-2006-6013
|
| FULLDISC:20061121 GNU tar directory traversal |
CVE-2006-6097
|
| FULLDISC:20061121 LS-20061113 - CA BrightStor ARCserve Backup Remote Buffer Overflow Vulnerability |
CVE-2006-6076
|
| FULLDISC:20061122 LS-20061113 - CA BrightStor ARCserve Backup Remote Buffer Overflow Vulnerability |
CVE-2006-6076
|
| FULLDISC:20061127 REMLAB Web Mech Designer 2.0.5 Path Disclosure Vulnerability |
CVE-2006-5896
|
| FULLDISC:20061128 Monkey Boards version 0.3.5 Multiple Path Disclosure Vulnerabilities |
CVE-2006-6113
|
| FULLDISC:20061128 ProFTPD mod_tls pre-authentication buffer overflow |
CVE-2006-6170
|
| FULLDISC:20061201 Layered Defense Advisory: Novell Client 4.91 Format String Vulnerability |
CVE-2006-6306
|
| FULLDISC:20061201 NetBSD FTPD and ports ***REMOTE ROOOOOT HOLE*** |
CVE-2006-6652
|
| FULLDISC:20061201 deV!L`z Clanportal - Arbitrary File Upload [061124b] |
CVE-2006-6338
|
| FULLDISC:20061204 F-Prot Antivirus for Unix: heap overflow and Denial of Service |
CVE-2006-6293
CVE-2006-6352
|
| FULLDISC:20061206 EEYE: Adobe Download Manager AOM Stack Buffer Overflow Vulnerability |
CVE-2006-5856
|
| FULLDISC:20061206 Linksys WIP 330 VoIP wireless phone crash from Nmap scan |
CVE-2006-6411
|
| FULLDISC:20061209 (no subject) |
CVE-2006-6587
|
| FULLDISC:20061210 Another, different MS Word 0-day vulnerability reported |
CVE-2006-6456
|
| FULLDISC:20061210 Multiple vulnerabilities in Winamp Web Interface 7.5.13 |
CVE-2006-6512
CVE-2006-6513
CVE-2006-6514
CVE-2006-6539
|
| FULLDISC:20061211 Secunia Research: AOL CDDBControl ActiveX Control "SetClientInfo()" Buffer Overflow |
CVE-2006-6442
|
| FULLDISC:20061211 The newest Word flaw is due to malformed data structure handling |
CVE-2006-6456
|
| FULLDISC:20061213 Coolplayer buffer overflow vulnerabilities |
CVE-2006-6288
|
| FULLDISC:20061214 Project Server 2003 - Credential Disclosure |
CVE-2006-6617
|
| FULLDISC:20061215 BitDefender AV Packed PE File Parsing Engine Heap Overflow |
CVE-2006-6627
|
| FULLDISC:20061219 HP Printers FTP Server Denial Of Service |
CVE-2006-6742
|
| FULLDISC:20061220 Oracle Portal 10g HTTP Response Splitting |
CVE-2006-6697
|
| FULLDISC:20061220 Re: [Full-disclosure] Oracle Portal 10g HTTP Response Splitting |
CVE-2006-6697
|
| FULLDISC:20061221 Microsoft Windows XP/2003/Vista memory corruption 0day |
CVE-2006-6696
|
| FULLDISC:20061225 w3m format string bug |
CVE-2006-6772
|
| FULLDISC:20061227 WordPress Persistent XSS |
CVE-2006-6808
|
| FULLDISC:20061231 edbrowse buffer overflow |
CVE-2006-6909
|
| FULLDISC:20070102 Apache 1.3.37 htpasswd buffer overflow vulnerability |
CVE-2006-1078
|
| FULLDISC:20070102 Inforamtion Discloser Vulnerabilities in phpMyAdmin |
CVE-2007-0095
|
| FULLDISC:20070102 Inforamtion Discloser Vulnerabilities in "phpMyAdmin" |
CVE-2007-0095
|
| FULLDISC:20070104 Concurrency strikes MSIE (potentially exploitable msxml3 flaws) |
CVE-2007-0099
|
| FULLDISC:20070104 DMA[2007-0104a] - 'iLife iPhoto Photocasing Format String Vulnerability' |
CVE-2007-0051
|
| FULLDISC:20070104 Re: Concurrency strikes MSIE (potentially exploitablemsxml3 flaws) |
CVE-2007-0099
|
| FULLDISC:20070104 [vuln.sg] PowerArchiver PAISO.DLL Buffer Overflow |
CVE-2007-0097
|
| FULLDISC:20070105 NNL-Labs & MNIN - F5 FirePass Security Advisory |
CVE-2007-0187
|
| FULLDISC:20070105 [DRUPAL-SA-2007-001] Drupal 4.6.11 / 4.7.5 fixes |
CVE-2007-0136
|
| FULLDISC:20070106 NNL-Labs & MNIN - F5 FirePass Security Advisory |
CVE-2007-0186
CVE-2007-0187
CVE-2007-0188
CVE-2007-0195
|
| FULLDISC:20070109 Adobe Reader Remote Heap Memory Corruption - Subroutine Pointer Overwrite |
CVE-2006-5857
|
| FULLDISC:20070109 Sina UC ActiveX Multiple Remote Stack Overflow |
CVE-2007-0174
|
| FULLDISC:20070110 EIQ Networks Network Security Analyzer DoS Vulnerability |
CVE-2007-0228
|
| FULLDISC:20070115 Rixstep aren't as leet as they thought they were |
CVE-2007-0336
|
| FULLDISC:20070117 Flaw in AVM UPNP service for windows |
CVE-2007-0357
|
| FULLDISC:20070117 [x0n3-h4ck] myBloggie 2.1.5 XSS exploit |
CVE-2007-0353
|
| FULLDISC:20070118 The Quidway Router local DOS |
CVE-2007-0488
|
| FULLDISC:20070118 The vulnerabilities festival ! |
CVE-2006-6945
CVE-2007-0372
CVE-2007-0373
CVE-2007-0374
CVE-2007-0375
CVE-2007-0376
CVE-2007-0377
CVE-2007-0378
CVE-2007-0379
CVE-2007-0380
CVE-2007-0381
CVE-2007-0382
CVE-2007-0383
CVE-2007-0384
CVE-2007-0385
CVE-2007-0386
CVE-2007-0387
|
| FULLDISC:20070118 [x0n3-h4ck] sabros.us 1.7 XSS Exploit |
CVE-2007-0390
|
| FULLDISC:20070118 [x0ne-h4ck] sabros.us 1.7 XSS Exploit |
CVE-2007-0390
|
| FULLDISC:20070118 mbsebbs 0.70.0 & below local root exploit |
CVE-2007-0368
|
| FULLDISC:20070119 DoS against AVM Fritz!Box 7050 (and others) |
CVE-2007-0431
|
| FULLDISC:20070119 Layered Defense Research Advisory: BitDefender Client 8.02 Format String Vulnerability |
CVE-2007-0391
|
| FULLDISC:20070119 WzdFTPD < 8.1 Denial of service |
CVE-2007-0428
|
| FULLDISC:20070121 RubyGems 0.9.0 and earlier installation exploit |
CVE-2007-0469
|
| FULLDISC:20070122 Check Point Connectra End Point security bypass |
CVE-2007-0471
|
| FULLDISC:20070125 BIND remote exploit (low severity) [Fwd: Internet Systems Consortium Security Advisory.] |
CVE-2007-0493
|
| FULLDISC:20070125 Earthlink TotalAccess ActiveX Unsafe Methods Vulnerability |
CVE-2007-0617
|
| FULLDISC:20070125 [NETRAGARD-20061218 SECURITY ADVISORY] [@Mail WebMail Cross Site Request Forgery] |
CVE-2006-6701
|
| FULLDISC:20070128 Internet Explorer 7 ActiveX bgColor property NULL pointer dereference (DoS) |
CVE-2007-0612
|
| FULLDISC:20070129 CVSTrac 2.0.0 Denial of Service (DoS) vulnerability |
CVE-2007-0347
|
| FULLDISC:20070129 Internet Explorer 7 ActiveX bgColor property NULL pointer dereference (DoS) |
CVE-2007-0612
|
| FULLDISC:20070201 Omegaboard v1.0b4 (phpbb_root_path) Remote File Include Exploit |
CVE-2007-0683
|
| FULLDISC:20070201 Remote Sql Injection in EasyMoblog 0.5.1 |
CVE-2007-0759
|
| FULLDISC:20070201 Remote Sql Injection in EasyMoblog 0.5.1 # 2 |
CVE-2007-0759
|
| FULLDISC:20070201 umount crash and xterm (kind of) information leak! |
CVE-2007-0822
CVE-2007-0823
|
| FULLDISC:20070203 Web 2.0 backdoors made easy with MSIE & XMLHttpRequest |
CVE-2005-4827
|
| FULLDISC:20070205 Firefox + popup blocker + XMLHttpRequest + srand() = oops |
CVE-2007-0800
|
| FULLDISC:20070205 Re: Firefox + popup blocker + XMLHttpRequest + srand() = oops |
CVE-2007-0800
|
| FULLDISC:20070206 Medium level security hole in FreeProxy |
CVE-2007-0838
|
| FULLDISC:20070206 PS Information Leak on HP True64 Alpha OSF1 v5.1 1885 |
CVE-2007-0805
|
| FULLDISC:20070207 Alibaba Alipay Remote Code Execute Vulnerability-0DAY |
CVE-2007-0827
|
| FULLDISC:20070208 Axigen <2.0.0b1 DoS |
CVE-2007-0886
CVE-2007-0887
|
| FULLDISC:20070208 SecurityVulns.com: HP Network Node Manager remote console weak files permissions |
CVE-2007-0819
|
| FULLDISC:20070209 Denial Of Service in Internet Explorer for MS Windows Mobile 5.0 |
CVE-2007-0878
|
| FULLDISC:20070209 Re: [WEB SECURITY] Plain Old Webserver - The coolest firefox extension |
CVE-2007-0872
|
| FULLDISC:20070211 "0day was the case that they gave me" |
CVE-2007-0882
|
| FULLDISC:20070211 Arbitrary file disclosure vulnerability in IP3 NetAccess < 4.1.9.6 |
CVE-2007-0883
|
| FULLDISC:20070211 Firefox focus stealing vulnerability (possibly other browsers) |
CVE-2006-2894
|
| FULLDISC:20070211 Multiple vulnerabilities in phpMyVisites |
CVE-2007-0891
CVE-2007-0892
CVE-2007-0893
|
| FULLDISC:20070213 Aruba Mobility Controller Management Buffer Overflow |
CVE-2007-0931
|
| FULLDISC:20070213 Aruba Networks - Unauthorized Administrative and WLAN Access through Guest Account |
CVE-2007-0932
|
| FULLDISC:20070214 MailEnable DoS POC |
CVE-2007-0955
|
| FULLDISC:20070214 MailEnable DoS POC-2 |
CVE-2007-0955
|
| FULLDISC:20070215 Comodo DLL injection via weak hash function exploitation Vulnerability |
CVE-2007-1051
|
| FULLDISC:20070215 Firefox: serious cookie stealing / same-domain bypass vulnerability |
CVE-2007-0981
|
| FULLDISC:20070215 Re: [Full-disclosure] Firefox: serious cookie stealing / same-domain bypass vulnerability |
CVE-2007-0981
|
| FULLDISC:20070215 Word flaw CVE-2007-0870 confirmed as code execution type issue |
CVE-2007-0870
|
| FULLDISC:20070220 Blind sql injection attack in INSERT syntax on PHP-nuke <=8.0 Final |
CVE-2007-1061
|
| FULLDISC:20070221 Firefox bookmark cross-domain surfing vulnerability |
CVE-2007-1084
|
| FULLDISC:20070222 Firefox onUnload + document.write() memory corruption vulnerability (MSIE7 null ptr) |
CVE-2007-1092
|
| FULLDISC:20070222 Microsoft Windows 2000/XP/2003/Vista ReadDirectoryChangesW informaton leak |
CVE-2007-0843
|
| FULLDISC:20070223 MSIE7 browser entrapment vulnerability (probably Firefox, too) |
CVE-2007-1091
CVE-2007-1095
|
| FULLDISC:20070226 Local user to root escalation in apache 1.3.34 (Debian only) |
CVE-2006-7098
|
| FULLDISC:20070226 SEC Consult SA-20070226-0 :: File Disclosure in |
CVE-2007-1158
|
| FULLDISC:20070226 WordPress AdminPanel CSRF/XSS - 0day |
CVE-2007-1244
|
| FULLDISC:20070227 Nullsoft ShoutcastServer Persistant XSS - 0day |
CVE-2007-1229
|
| FULLDISC:20070227 RE: [Full-disclosure] Firefox onUnload + document.write() memory corruption vulnerability (MSIE7 null ptr) |
CVE-2007-1256
|
| FULLDISC:20070227 Re: [Full-disclosure] Firefox onUnload + document.write() memory corruption vulnerability (MSIE7 null ptr) |
CVE-2007-1256
|
| FULLDISC:20070227 Re:SEC Consult SA-20070226-0 :: File Disclosure |
CVE-2007-1158
|
| FULLDISC:20070228 Quicksilver Social Bookmark plugin v.8F: password in clear text |
CVE-2007-1191
|
| FULLDISC:20070301 MPlayer DMO buffer overflow |
CVE-2007-1246
|
| FULLDISC:20070301 tcpdump: off-by-one heap overflow in 802.11 printer |
CVE-2007-1218
|
| FULLDISC:20070304 Konqueror DoS Via JavaScript Read Of FTP Iframe |
CVE-2007-1308
|
| FULLDISC:20070306 Apple QuickTime udta ATOM Integer Overflow |
CVE-2007-0714
|
| FULLDISC:20070306 Mercury/32 4.01b |
CVE-2007-1373
|
| FULLDISC:20070306 silc-server 1.0.2 denial-of-service vulnerability |
CVE-2007-1327
|
| FULLDISC:20070313 Unrarlib 0.4.0 (urarlib_get) Local buffer overflow |
CVE-2007-1457
|
| FULLDISC:20070314 [Advisory]McAfee ePolicy Orchestrator Multiple Remote Buffer Overflow Vulnerabilities |
CVE-2007-1498
|
| FULLDISC:20070315 Horde IMP Webmail Client version H3 (4.1.4) fixes multiple XSS issues |
CVE-2007-1515
|
| FULLDISC:20070315 Norton Insufficient validation of 'SymTDI' driver |
CVE-2007-1476
|
| FULLDISC:20070319 Asterisk SDP DOS vulnerability |
CVE-2007-1561
|
| FULLDISC:20070319 w-agora version 4.2.1 Information Disclosure Vulnerability |
CVE-2007-0607
|
| FULLDISC:20070320 Mercur SP4 IMAPD |
CVE-2007-1578
|
| FULLDISC:20070321 Grandstream Budge Tone-200 denial of service vulnerability |
CVE-2007-1590
|
| FULLDISC:20070323 Microsoft Windows Vista - Windows Mail Client Side Code Execution Vulnerability |
CVE-2007-1658
|
| FULLDISC:20070323 Re: Microsoft Windows Vista - Windows Mail Client Side Code Execution Vulnerability |
CVE-2007-1658
|
| FULLDISC:20070323 dproxy - arbitrary code execution through stack buffer overflow vulnerability |
CVE-2007-1465
|
| FULLDISC:20070327 Remote DOS HP JetDirect Print Servers |
CVE-2007-1772
|
| FULLDISC:20070327 SignKorea's ActiveX Buffer Overflow Vulnerability |
CVE-2007-1722
|
| FULLDISC:20070329 CA Brightstor Backup Mediasvr.exe Remote Code Vulnerability |
CVE-2007-1785
|
| FULLDISC:20070330 0-day ANI vulnerability in Microsoft Windows (CVE-2007-0038) |
CVE-2007-0038
|
| FULLDISC:20070331 Re: dproxy-nexgen remote |
CVE-2007-1866
|
| FULLDISC:20070331 dproxy-nexgen remote |
CVE-2007-1866
|
| FULLDISC:20070403 HP Mercury Quality Center Any SQL execution |
CVE-2007-1882
|
| FULLDISC:20070412 Dotclear 1.* Cross Site Scripting Vulnerability |
CVE-2007-1989
|
| FULLDISC:20070418 Firefox 2.0.0.3 Phishing Protection Bypass Vulnerability |
CVE-2007-0802
|
| FULLDISC:20070419 XSS in freePBX 2.2.x portal's Asterisk Log tool |
CVE-2007-2191
|
| FULLDISC:20070420 eXtremail-v9 |
CVE-2007-2187
CVE-2007-2188
|
| FULLDISC:20070421 OpenSSH - System Account Enumeration if S/Key is used |
CVE-2007-2243
|
| FULLDISC:20070421 freePBX 2.2.x's Music-on-hold Remote Code Execution Injection |
CVE-2007-2350
|
| FULLDISC:20070424 Linksys SPA941 remote DOS with \377 character |
CVE-2007-2270
|
| FULLDISC:20070424 OpenSSH - System Account Enumeration if S/Key is used |
CVE-2007-2243
|
| FULLDISC:20070424 Re: OpenSSH - System Account Enumeration if S/Key is used |
CVE-2007-2768
|
| FULLDISC:20070424 Security Advisory: CA CleverPath SQL Injection |
CVE-2007-2230
|
| FULLDISC:20070427 mydns-1.1.0 remote heap overflow |
CVE-2007-2362
|
| FULLDISC:20070430 Aventail Connect SSL VPN Client Buffer Overflow |
CVE-2007-2434
|
| FULLDISC:20070501 Firefox 2.0.0.3 Out-of-bounds memory access via specialy crafted html file |
CVE-2007-2671
|
| FULLDISC:20070509 Exchange Calendar MODPROPS Denial of Service (CVE-2007-0039) |
CVE-2007-0039
|
| FULLDISC:20070511 Teamspeak Server 2.0.20.1 Vulnerabilities |
CVE-2007-4529
CVE-2007-4530
|
| FULLDISC:20070512 CommuniGate Pro web mail persistent cross-site scripting vulnerability |
CVE-2007-2718
|
| FULLDISC:20070512 Cross-site Scripting in EQDKP 1.3.2c and prior |
CVE-2007-2716
|
| FULLDISC:20070512 Re: Cross-site Scripting in EQDKP 1.3.2c and prior |
CVE-2007-2716
|
| FULLDISC:20070513 MyBB version 1.2.4 Multiple Path Disclosure Vulnerabilities |
CVE-2007-0689
|
| FULLDISC:20070514 SonicBB version 1.0 Multiple Path Disclosure Vulnerabilities |
CVE-2007-1901
|
| FULLDISC:20070514 SonicBB version 1.0 Multiple SQL Injection Vulnerabilities |
CVE-2007-1902
|
| FULLDISC:20070514 SonicBB version 1.0 XSS Attack Vulnerabilities |
CVE-2007-1903
|
| FULLDISC:20070514 WordPress 2.1.3 Akismet Vulnerability |
CVE-2007-2714
|
| FULLDISC:20070518 PsychoStats 3.0.6b and prior |
CVE-2007-2780
|
| FULLDISC:20070518 Re: PsychoStats 3.0.6b and prior |
CVE-2007-2780
|
| FULLDISC:20070521 Jetbox CMS version 2.1 Multiple Path Disclosure Vulnerabilities |
CVE-2007-2684
|
| FULLDISC:20070521 Jetbox CMS version 2.1 Multiple SQL Injection Vulnerabilities |
CVE-2007-2685
|
| FULLDISC:20070522 GMTT Music Distro 1.2 Vulnerable to XSS |
CVE-2007-2916
|
| FULLDISC:20070522 Jetbox CMS version 2.1 XSS Attack Vulnerability |
CVE-2007-2686
|
| FULLDISC:20070522 KSign KSignSWAT ActiveX Control Multiple Buffer Overflows Vulnerability |
CVE-2007-2820
|
| FULLDISC:20070522 Question Regarding IIS 6.0 / Is this a DoS??? |
CVE-2007-2897
|
| FULLDISC:20070522 phpPgAdmin XSS Vulnerability |
CVE-2007-2865
|
| FULLDISC:20070523 Cisco CallManager 4.1 Input Validation Vulnerability |
CVE-2007-2832
|
| FULLDISC:20070523 Re: Question Regarding IIS 6.0 / Is this a DoS??? |
CVE-2007-2897
|
| FULLDISC:20070524 n.runs-SA-2007.008 - Avast! Antivirus CAB parsing |
CVE-2007-2845
|
| FULLDISC:20070525 n.runs-SA-2007.009 - Avast! Antivirus SIS parsing Arbitrary Code Execution Advisory |
CVE-2007-2846
|
| FULLDISC:20070527 phpPgAdmin Multiple XSS Vulnerabilities |
CVE-2007-5728
|
| FULLDISC:20070528 Uebimiau Webmail Multiple Vulnerabilities |
CVE-2007-3170
CVE-2007-3171
CVE-2007-3172
|
| FULLDISC:20070528 n.runs-SA-2007.010 - Avira Antivir Antivirus LZH parsing Arbitrary Code Execution Advisory |
CVE-2007-2974
|
| FULLDISC:20070529 n.runs-SA-2007.011 - Avira Antivir Antivirus UPX |
CVE-2007-2972
|
| FULLDISC:20070601 PHPLive ALL VERSION: RFI + XSS |
CVE-2007-3060
|
| FULLDISC:20070601 static XSS / SQL-Injection in Omegasoft Insel |
CVE-2007-2992
CVE-2007-2993
|
| FULLDISC:20070604 Assorted browser vulnerabilities |
CVE-2007-3089
CVE-2007-3091
CVE-2007-3092
CVE-2008-0591
|
| FULLDISC:20070604 Full Path Disclosure eqDKP 1.3.2c and prior |
CVE-2007-3079
|
| FULLDISC:20070604 Kevin Johnson BASE <= 1.3.6 authentication bypass |
CVE-2007-5578
|
| FULLDISC:20070604 n.runs-SA-2007.014 - F-Secure Antivirus ARJ parsing Infinite Loop Advisory |
CVE-2007-2967
|
| FULLDISC:20070604 n.runs-SA-2007.015 - F-Secure Antivirus FSG packed files parsing Infinite Loop Advisory |
CVE-2007-2967
|
| FULLDISC:20070604 screen 4.0.3 local Authentication Bypass |
CVE-2007-3048
|
| FULLDISC:20070605 Cacti Denial of Service |
CVE-2007-3112
|
| FULLDISC:20070606 Kevin Johnson BASE <= 1.3.6 authentication bypass |
CVE-2007-5578
|
| FULLDISC:20070606 Yahoo 0day ActiveX Webcam Exploit |
CVE-2007-3147
|
| FULLDISC:20070607 2nd Yahoo 0day ActiveX Exploit |
CVE-2007-3148
|
| FULLDISC:20070608 CSIS Advisory: BlueCoat K9 Web Protection 3.2.36 Overflow |
CVE-2007-1685
|
| FULLDISC:20070608 Re: CSIS Advisory: BlueCoat K9 Web Protection 3.2.36 Overflow |
CVE-2007-1685
CVE-2007-1783
|
| FULLDISC:20070608 SafeNET High Assurance Remote/SoftRemote (IPSecDrv.sys) remote DoS |
CVE-2007-3157
|
| FULLDISC:20070610 Serious holes affecting JFFNMS |
CVE-2007-3189
CVE-2007-3190
CVE-2007-3191
CVE-2007-3192
|
| FULLDISC:20070611 TippingPoint detection bypass |
CVE-2007-3711
|
| FULLDISC:20070612 Safari for Windows, 0day URL protocol handler command injection |
CVE-2007-3186
|
| FULLDISC:20070612 using matasano's blackbag/deezee to find 0day and stuff |
CVE-2007-3232
|
| FULLDISC:20070614 Letterman subscriber module XSS vulnerability |
CVE-2007-3249
|
| FULLDISC:20070614 Re: Apple Safari: urlbar/window title spoofing |
CVE-2007-2398
|
| FULLDISC:20070617 H4CREW-000005 EasyNews Pro 4.0 XSS & CSRF |
CVE-2007-3330
CVE-2007-3331
|
| FULLDISC:20070617 Utopia News Pro version 1.4.0 XSS Attack Vulnerability |
CVE-2007-3129
|
| FULLDISC:20070617 WSPortal version 1.0 Path Disclosure Vulnerability |
CVE-2007-3127
|
| FULLDISC:20070617 WSPortal version 1.0 SQL Injection Vulnerability |
CVE-2007-3128
|
| FULLDISC:20070624 Papoo CMS 3.6 - Access Restriction Bypass |
CVE-2007-3494
|
| FULLDISC:20070625 Calendarix version 0.7. 20070307 Multiple Path Disclosure |
CVE-2007-3258
|
| FULLDISC:20070625 Safari Bookmarks Buffer Overflow Vulnerability |
CVE-2007-3376
|
| FULLDISC:20070627 eTicket version 1.5.5 Path Disclosure |
CVE-2007-2800
|
| FULLDISC:20070627 eTicket version 1.5.5 XSS Attack Vulnerability |
CVE-2007-2801
|
| FULLDISC:20070628 Re: Intel Core 2 CPUs are buggy. Patch your cpus :D |
CVE-2006-7215
|
| FULLDISC:20070630 New flaw found in Firefox 2.0.0.4: Firefox file input focus vulnerabilities |
CVE-2007-3511
|
| FULLDISC:20070630 Re: New flaw found in Firefox 2.0.0.4: Firefox file input focus vulnerabilities |
CVE-2007-3511
|
| FULLDISC:20070701 Advisory : Internet Explorer Zone Domain Specification Dos and Page suppressing. |
CVE-2007-3550
|
| FULLDISC:20070702 Yoggie Pico Pro Remote Code Execution |
CVE-2007-3572
|
| FULLDISC:20070703 Cross Site Scripting in Oliver Library Management System |
CVE-2007-3569
|
| FULLDISC:20070705 Internet Communication Manager Denial Of Service Attack |
CVE-2007-3615
|
| FULLDISC:20070705 Re: Yoggie Pico Pro Remote Code Execution |
CVE-2007-3572
|
| FULLDISC:20070709 Anti-DNS Pinning and Java Applets |
CVE-2007-5273
|
| FULLDISC:20070709 CodeIgniter 1.5.3 vulnerabilities |
CVE-2007-3706
CVE-2007-3707
CVE-2007-3708
CVE-2007-3709
|
| FULLDISC:20070710 Internet Explorer 0day exploit |
CVE-2007-3670
|
| FULLDISC:20070710 Portcullis Computer Security Ltd - Advisories |
CVE-2007-3768
CVE-2007-3769
CVE-2007-3784
|
| FULLDISC:20070710 TippingPoint IPS Signature Evasion |
CVE-2007-3701
|
| FULLDISC:20070710 [GOODFELLAS - VULN] sasatl.dll 1.5.0.531 Program Checker - Javascript Heap Spraying Exploit |
CVE-2007-3703
|
| FULLDISC:20070711 Advisory - Clam AntiVirus RAR File Handling Denial Of Service Vulnerability. |
CVE-2007-3725
|
| FULLDISC:20070711 SUN Java JNLP Overflow |
CVE-2007-3655
|
| FULLDISC:20070711 durito: enVivo!CMS SQL injection |
CVE-2005-1413
CVE-2007-3783
|
| FULLDISC:20070713 Element CMS script insertion vulnerability |
CVE-2007-3886
|
| FULLDISC:20070713 PIRS2007 local buffer overflow vulnerability |
CVE-2007-3815
|
| FULLDISC:20070714 paFileDB 3.6 (search.php) Remote SQL Injection |
CVE-2007-3808
|
| FULLDISC:20070716 ExLibris Aleph and Metalib Cross Site Scripting Attack |
CVE-2007-3835
|
| FULLDISC:20070716 Yahoo Messenger 8.1 Buffer Overflow |
CVE-2007-3928
|
| FULLDISC:20070717 [Sec-1 Ltd] Advisory: MailMarshal Spam Quarantine Password Retrieval Vulnerability |
CVE-2007-3796
|
| FULLDISC:20070718 Can CERT VU#786920 be right? |
CVE-2007-3832
|
| FULLDISC:20070721 CVE-2007-3383: XSS in Tomcat send mail example |
CVE-2007-3383
|
| FULLDISC:20070721 [CVE-2007-3816][Advisory] JWIG Context-Dependent Template Calling Dos |
CVE-2007-3816
|
| FULLDISC:20070722 Re: [CVE 2007-3816] [Advisory] Vulnerability Facts Related JWIG Advisory |
CVE-2007-3816
|
| FULLDISC:20070723 [CVE 2007-3816] [Advisory] Vulnerability Facts Related JWIG Advisory |
CVE-2007-3816
|
| FULLDISC:20070725 Mozilla protocol abuse |
CVE-2007-4038
CVE-2007-4039
CVE-2007-4040
|
| FULLDISC:20070726 WordPress wp-feedstats persistent XSS |
CVE-2007-4104
|
| FULLDISC:20070726 [CVE 2007-3816] [Advisory] Vulnerability Facts Related JWIG Advisory |
CVE-2007-3816
|
| FULLDISC:20070730 Security Testing Enterprise Messaging Systems |
CVE-2007-4158
CVE-2007-4159
CVE-2007-4160
CVE-2007-4161
CVE-2007-4162
|
| FULLDISC:20070731 CAL-20070730-1 BlueSkyCat ActiveX Remote Heap Overflow vulnerability |
CVE-2007-4145
|
| FULLDISC:20070802 DVD Rental System multiple XSS and CSRF vulnerabilities |
CVE-2007-4192
CVE-2007-4193
|
| FULLDISC:20070806 Konqueror: URL address bar spoofing vulnerabilities |
CVE-2007-4224
CVE-2007-4225
|
| FULLDISC:20070808 XSS vulnerability in Cisco MeetingPlace |
CVE-2007-4284
|
| FULLDISC:20070812 Vulnerability in multiple "now playing" scripts for various IRC clients |
CVE-2007-4396
CVE-2007-4397
CVE-2007-4398
CVE-2007-4399
CVE-2007-4400
CVE-2007-4401
CVE-2007-4402
CVE-2007-4403
|
| FULLDISC:20070814 Multiple vulnerabilities in Live for Speed 0.5X10 |
CVE-2007-4425
CVE-2007-4426
|
| FULLDISC:20070814 Remote Memory Read in Diskeeper 9 - 2007 |
CVE-2007-4375
|
| FULLDISC:20070814 Stop WabiSabiLabi Hacker Oppression NOW |
CVE-2007-4377
|
| FULLDISC:20070818 Mercury SMTPD Remote Preauth Stack Based Overrun |
CVE-2007-4440
|
| FULLDISC:20070820 10 messages SIP Remote DOS on Cisco 7940 SIP Phone |
CVE-2007-4459
|
| FULLDISC:20070820 3 messsages attack remote DOS on Cisco 7940 |
CVE-2007-4459
|
| FULLDISC:20070821 AST-2007-020: Resource Exhaustion Vulnerability in Asterisk SIP channel driver |
CVE-2007-4455
|
| FULLDISC:20070822 Remote eavesdropping with SIP Phone GXV-3000 |
CVE-2007-4498
|
| FULLDISC:20070823 DOS vulnerability on Thomson SIP phone ST 2030 using the VIA Header |
CVE-2007-4553
|
| FULLDISC:20070823 Ipswitch FTP XSS leads to FTP server compromise |
CVE-2007-4555
|
| FULLDISC:20070824 [MU-200708-01] Helix DNA Server Heap Corruption |
CVE-2007-4561
|
| FULLDISC:20070826 SIDVault LDAP Server Remote Buffer Overflow |
CVE-2007-4566
|
| FULLDISC:20070827 DOS vulnerability on Thomson SIP phone ST 2030 using the TO Header |
CVE-2007-4753
|
| FULLDISC:20070827 Stampit Web - DoS (CVE-2007-3871) |
CVE-2007-3871
|
| FULLDISC:20070828 DOS vulnerability on Thomson SIP phone ST 2030 using an empty packet |
CVE-2007-4753
|
| FULLDISC:20070829 Multiple eScan products insecure file permissions |
CVE-2007-4649
|
| FULLDISC:20070904 212cafeBoard Sql injection |
CVE-2007-4719
|
| FULLDISC:20070905 Format string and clients disconnection in Alien Arena 2007 6.10 |
CVE-2007-4754
CVE-2007-4755
|
| FULLDISC:20070906 Apache Tomcat remote xss |
CVE-2005-4838
|
| FULLDISC:20070911 RealPlayer/HelixPlayer .au Divide-By-Zero Denial of Service Vulnerability |
CVE-2007-4884
CVE-2007-4885
CVE-2007-4904
|
| FULLDISC:20070912 S21SEC-036-EN Ekiga <= 2.0.5 Denial of service |
CVE-2007-4897
|
| FULLDISC:20070915 Drupal Link to Us Module Contains XSS Vulnerability |
CVE-2008-4149
|
| FULLDISC:20070916 python <= 2.5.1 standart librairy multiples int overflow, heap overflow in imageop module |
CVE-2007-4965
|
| FULLDISC:20070917 Alcatel-Lucent OmniPCX Remote Command Execution |
CVE-2007-3010
|
| FULLDISC:20070918 [MU-200709-02] Dibbler Remote Denial of Service Vulnerability |
CVE-2007-5029
CVE-2007-5030
CVE-2007-5031
|
| FULLDISC:20070920 VMSA-2007-0006 Critical security updates for all supported versions of VMware ESX Server, VMware Server, VMware Workstation, VMware ACE, and VMware Player |
CVE-2004-0813
CVE-2006-1174
CVE-2006-3619
CVE-2006-4146
CVE-2006-4600
CVE-2007-0061
CVE-2007-0062
CVE-2007-0063
CVE-2007-0494
CVE-2007-1716
CVE-2007-1856
CVE-2007-2442
CVE-2007-2443
CVE-2007-2446
CVE-2007-2447
CVE-2007-2798
CVE-2007-4059
CVE-2007-4155
CVE-2007-4496
CVE-2007-4497
CVE-2007-5617
CVE-2007-5618
|
| FULLDISC:20070924 COSEINC Linux Advisory #2: IA32 System Call |
CVE-2007-4573
|
| FULLDISC:20070924 JSPWiki Multiple Input Validation Vulnerabilities |
CVE-2007-5119
CVE-2007-5120
CVE-2007-5121
|
| FULLDISC:20070925 SimpNews version 2.41.03 File Content Disclosure Vulnerability |
CVE-2007-4873
|
| FULLDISC:20070925 SimpNews version 2.41.03 Multiple Path Disclosure Vulnerabilities |
CVE-2007-4872
|
| FULLDISC:20070927 Re: CAT6500 accessible via 127.0.0.x loopback addresses |
CVE-2007-5134
|
| FULLDISC:20070930 Re: [Full-disclosure] feedreader3 has XSS vulnerability |
CVE-2007-5161
|
| FULLDISC:20071003 Hijacking Feeds with Feedburner |
CVE-2007-5229
|
| FULLDISC:20071004 Vba32 AntiVirus v3.12.2 insecure file permissions |
CVE-2007-5254
|
| FULLDISC:20071005 URI handling woes in Acrobat Reader, Netscape, Miranda, Skype |
CVE-2007-3896
|
| FULLDISC:20071006 Re: URI handling woes in Acrobat Reader, Netscape, Miranda, Skype |
CVE-2007-3896
|
| FULLDISC:20071007 Re: URI handling woes in Acrobat Reader, Netscape, Miranda, Skype |
CVE-2007-3896
|
| FULLDISC:20071009 Owning the internal network with SIP (part 1) and a Linksys Phone |
CVE-2007-5411
|
| FULLDISC:20071012 CallManager and OpeSer toll fraud and authentication forward attack |
CVE-2007-5468
CVE-2007-5469
|
| FULLDISC:20071013 Netgear SSL312 XSS vulnerability |
CVE-2007-5562
|
| FULLDISC:20071013 PHP File Sharing System 1.5.1 |
CVE-2007-5454
|
| FULLDISC:20071014 Apache Tomcat Rem0Te FiLe DiscloSure ZeroDay |
CVE-2007-5461
|
| FULLDISC:20071015 CallManager and OpeSer toll fraud and authentication forward attack |
CVE-2007-5468
CVE-2007-5469
|
| FULLDISC:20071017 AST-2007-023: SQL Injection POC and details |
CVE-2007-5488
|
| FULLDISC:20071022 Re: [Full-disclosure] ifnet.it WEBIF XSS Vulnerability |
CVE-2007-5673
|
| FULLDISC:20071022 ifnet.it WEBIF XSS Vulnerability |
CVE-2007-5673
|
| FULLDISC:20071023 3proxy double free vulnerability |
CVE-2007-5622
|
| FULLDISC:20071023 Miranda IM Multiple Buffer Overflow Vulnerabilities |
CVE-2007-5542
CVE-2007-5543
|
| FULLDISC:20071031 SEC Consult SA-20071031-0 :: Perdition IMAP Proxy Format String Vulnerability |
CVE-2007-5740
|
| FULLDISC:20071102 Firefox 2.0.0.9 remote DoS vulnerability |
CVE-2007-5896
|
| FULLDISC:20071106 MySQL 5.x DoS (unknown) |
CVE-2007-5925
|
| FULLDISC:20071113 WebEx GPCContainer Memory Access Violation |
CVE-2007-6005
|
| FULLDISC:20071115 ComponentOne FlexGrid 7.1 Light Multiple Stack Overflows |
CVE-2007-6028
|
| FULLDISC:20071116 Microsoft Jet Engine MDB File Parsing Stack Overflow Vulnerability |
CVE-2007-6026
|
| FULLDISC:20071116 [RISE-2007004] Apple Mac OS X 10.4.x Kernel i386_set_ldt() Integer Overflow Vulnerability |
CVE-2007-4684
|
| FULLDISC:20071119 Wordpress Cookie Authentication Vulnerability |
CVE-2007-6013
|
| FULLDISC:20071127 CORE-2007-0821: Lotus Notes buffer overflow in the Lotus WorkSheet file processor |
CVE-2007-6593
|
| FULLDISC:20071130 Yahoo Toolbar Helper c() Method Stack Overflow DoS |
CVE-2007-6228
|
| FULLDISC:20071205 Cisco Phone 7940 remote DOS |
CVE-2007-5583
|
| FULLDISC:20071205 Nokia N95 cellphone remote DoS using the SIP Stack |
CVE-2007-6371
|
| FULLDISC:20071206 HackerSafe Labs - Security Advisory - Xigla Absolute Banner Manager v4.0 |
CVE-2007-6291
|
| FULLDISC:20071207 Heimdal ftpd uninitialized vulnerability |
CVE-2007-5939
|
| FULLDISC:20071207 netkit-ftpd/ftp uninitialized vulnerability |
CVE-2007-5769
CVE-2007-6263
|
| FULLDISC:20071208 Cisco Phone 7940 remote DOS |
CVE-2007-5583
|
| FULLDISC:20071208 MIT Kerberos 5: Multiple vulnerabilities |
CVE-2007-5894
CVE-2007-5901
CVE-2007-5902
CVE-2007-5971
CVE-2007-5972
|
| FULLDISC:20071208 Re: Cisco Phone 7940 remote DOS |
CVE-2007-5583
|
| FULLDISC:20071208 Venustech reports of MIT krb5 vulns [CVE-2007-5894 CVE-2007-5901 CVE-2007-5902 CVE-2007-5971 CVE-2007-5972] |
CVE-2007-5894
CVE-2007-5901
CVE-2007-5902
CVE-2007-5971
CVE-2007-5972
|
| FULLDISC:20071210 WordPress Charset SQL injection vulnerability (re-resend) |
CVE-2007-6318
|
| FULLDISC:20071212 Fwd: Websense 6.3.1 Filtering Bypass |
CVE-2007-6511
|
| FULLDISC:20071214 MailEnable DoS POC |
CVE-2007-0955
|
| FULLDISC:20071217 ZDI-07-078: St. Bernard Open File Manager Heap |
CVE-2007-6281
|
| FULLDISC:20071218 Appian Enterprise Business Suite 5.6 SP1 is |
CVE-2007-6509
|
| FULLDISC:20071219 HP eSupportDiagnostics hpediags.dll Information Disclosure |
CVE-2007-6513
|
| FULLDISC:20071219 Yahoo Toolbar YShortcut.dll IsTaggedBM() Buffer Overflow |
CVE-2007-6535
|
| FULLDISC:20071220 IBM Domino Web Access Upload Control dwa7w.dll Memory Corruption |
CVE-2007-4474
|
| FULLDISC:20071224 Installshield Update Service isusweb.dll Buffer Overflow |
CVE-2007-6654
|
| FULLDISC:20071225 AOL YGP Picture Editor YGPPicEdit.dll Multiple Buffer Overflows |
CVE-2007-6699
|
| FULLDISC:20071225 Ho Ho H0-Day - ZyXEL P-330W multiple XSS and XSRF vulnerabilities |
CVE-2007-6729
CVE-2007-6730
|
| FULLDISC:20071225 Persits Software XUpload.ocx Buffer Overflow |
CVE-2007-6530
|
| FULLDISC:20071227 Re: AOL YGP Picture Editor YGPPicEdit.dll Multiple Buffer Overflows |
CVE-2007-6699
|
| FULLDISC:20071228 FAQMasterFlexPlus multiple vulnerabilities |
CVE-2007-6633
CVE-2007-6634
CVE-2007-6635
|
| FULLDISC:20080103 securityvulns.com russian vulnerabilities digest |
CVE-2008-0190
CVE-2008-0191
CVE-2008-0192
CVE-2008-0193
CVE-2008-0194
CVE-2008-0195
CVE-2008-0196
CVE-2008-0197
CVE-2008-0198
CVE-2008-0199
CVE-2008-0200
CVE-2008-0201
CVE-2008-0202
CVE-2008-0203
CVE-2008-0204
CVE-2008-0205
CVE-2008-0206
CVE-2008-0207
|
| FULLDISC:20080109 Gateway WebLaunch ActiveX Control Insecure Method |
CVE-2008-0220
CVE-2008-0221
|
| FULLDISC:20080110 (( PoC)) ID-Commerce Security Advisory - SLR-2007-001 (( PoC)) |
CVE-2008-0281
|
| FULLDISC:20080110 ID-Commerce Security Advisory - SLR-2007-001 |
CVE-2008-0281
|
| FULLDISC:20080111 Cross site scripting (XSS) in Moodle 1.8.3 |
CVE-2008-0123
|
| FULLDISC:20080111 StreamAudio ChainCast ProxyManager ccpm_0237.dll Buffer Overflow |
CVE-2008-0248
|
| FULLDISC:20080113 Hacking The Interwebs |
CVE-2008-1654
|
| FULLDISC:20080115 Re: scada/plc gear |
CVE-2008-7199
|
| FULLDISC:20080117 Re: Skype videomood XSS |
CVE-2008-0454
|
| FULLDISC:20080117 Skype videomood XSS |
CVE-2008-0454
|
| FULLDISC:20080120 AXIGEN 5.0.x AXIMilter Format String Exploit |
CVE-2008-0434
|
| FULLDISC:20080122 HP Virtual Rooms WebHPVCInstall Control Multiple Buffer Overflows |
CVE-2008-0437
|
| FULLDISC:20080122 PHP 5.2.5 cURL safe_mode bypass |
CVE-2007-4850
|
| FULLDISC:20080124 Directory Traversal Vulnerability in Aconon Mail |
CVE-2008-0464
|
| FULLDISC:20080124 Re: scada/plc gear |
CVE-2008-7201
|
| FULLDISC:20080127 phpIP 4.3.2 - Numerous SQL Injection Vulnerablities |
CVE-2008-0538
|
| FULLDISC:20080131 Livelink UTF-7 XSS Vulnerability |
CVE-2008-0769
|
| FULLDISC:20080131 MySpace Uploader ActiveX Control Buffer Overflow |
CVE-2008-0659
|
| FULLDISC:20080203 FaceBook/Aurigma Image/PhotoUploader Buffer Overflow |
CVE-2008-0660
|
| FULLDISC:20080204 CORE-2007-1218: MPlayer 1.0rc2 buffer overflow vulnerability |
CVE-2008-0486
|
| FULLDISC:20080204 CORE-2008-0122: MPlayer arbitrary pointer dereference |
CVE-2008-0485
|
| FULLDISC:20080206 MyNews 1.6.X HTML/JS Injection Vulnerability |
CVE-2008-0723
|
| FULLDISC:20080207 Re: MyNews 1.6.X HTML/JS Injection Vulnerability |
CVE-2008-0723
|
| FULLDISC:20080208 Serendipity Freetag-plugin XSS vulnerability |
CVE-2008-0751
|
| FULLDISC:20080211 ZDI-08-005: Novell Client NWSPOOL.DLL EnumPrinters Stack Overflow Vulnerability |
CVE-2008-0639
|
| FULLDISC:20080213 OpenCA XSRF (CVE-2008-0556) |
CVE-2008-0556
|
| FULLDISC:20080214 DOINGSOFT-2008-02-11 - IPDiva VPN SSL Brute force attack |
CVE-2008-0915
|
| FULLDISC:20080214 DOINGSOFT-2008-02-11-002 IP Diva VPN SSL many XSS attacks |
CVE-2008-0914
|
| FULLDISC:20080221 Cisco and Vocera wireless LAN VoIP devices don't check certificates |
CVE-2008-1113
CVE-2008-1114
|
| FULLDISC:20080223 Cisco confirms vulnerability in 7921 Wi-Fi IP phone |
CVE-2008-1113
|
| FULLDISC:20080225 CORE-2007-0930 Path Traversal vulnerability in VMware's shared folders implementation |
CVE-2008-0923
|
| FULLDISC:20080226 Move Networks Quantum Streaming Player UploadLogs() Buffer Overflow |
CVE-2008-1044
|
| FULLDISC:20080226 XSS Vulnerability in AuthentiX |
CVE-2008-1174
|
| FULLDISC:20080227 CORE-2008-0130: VLC media player chunk context validation error |
CVE-2008-0984
|
| FULLDISC:20080303 Heap overflow in Borland VisiBroker Smart Agent 08.00.00.C1.03 |
CVE-2008-7126
CVE-2008-7127
|
| FULLDISC:20080305 Vulnerability in Linux Kiss Server v1.2 |
CVE-2008-1206
|
| FULLDISC:20080305 WebCT 4.x Javascript Session Stealer Exploits |
CVE-2008-1225
|
| FULLDISC:20080310 Real Networks RealPlayer ActiveX Control Heap Corruption |
CVE-2008-1309
|
| FULLDISC:20080311 Advisory: SQL-Injections in Mapbender |
CVE-2008-0301
|
| FULLDISC:20080324 ircu/snircd remote crash vulnerability |
CVE-2008-1501
|
| FULLDISC:20080328 Re: Smf 1.1.4 Remote File Inclusion Vulnerabilities |
CVE-2008-6544
|
| FULLDISC:20080328 Smf 1.1.4 Remote File Inclusion Vulnerabilities |
CVE-2008-6544
|
| FULLDISC:20080407 WoltLab(R) Community Framework XSS and Full Path Disclosure Vulnerability |
CVE-2008-1716
CVE-2008-1717
|
| FULLDISC:20080408 WoltLab(R) Community Framework XSS and Full Path Disclosure Vulnerability |
CVE-2008-1716
CVE-2008-1717
|
| FULLDISC:20080408 ZDI-08-020: Microsoft GDI WMF Parsing Heap Overflow Vulnerability |
CVE-2008-1083
|
| FULLDISC:20080413 DOINGSOFT-2008-03-10-001 - XSS issue in BOXiR2 |
CVE-2008-1894
|
| FULLDISC:20080415 gallarific backdoored , vulnerable to xss |
CVE-2008-6567
|
| FULLDISC:20080421 Adobe Unchecked Overflow |
CVE-2008-1765
|
| FULLDISC:20080422 Correcting CVEs (was Re: [Full-disclosure] Cross site scripting issues in s9y (CVE-2008-1386, CVE-2008-1387)) |
CVE-2008-1385
CVE-2008-1386
|
| FULLDISC:20080424 Lotus expeditor rcplauncher uri handler vulnerability |
CVE-2008-1965
|
| FULLDISC:20080430 Akamai Technologies Security Advisory 2008-0001 (Download Manager) |
CVE-2007-6339
|
| FULLDISC:20080502 Microsoft Work ActiveX Insecure Method Exploit |
CVE-2008-1898
|
| FULLDISC:20080506 Advisory SE-2008-02: PHP GENERATE_SEED() Weak Random Number Seed Vulnerability |
CVE-2008-2107
CVE-2008-2108
|
| FULLDISC:20080508 SonicWall e-mail security Host Header XSS Vulnerability |
CVE-2008-2162
|
| FULLDISC:20080508 ZYWALL Referer Header XSS Vulnerability |
CVE-2008-2167
|
| FULLDISC:20080509 XSS and CSRF vulnerability on cPanel 11 |
CVE-2008-2070
CVE-2008-2071
|
| FULLDISC:20080512 [SkyOut/Wired Security] SQL Injection in IDB Micro CMS 3.5 (Login Bypass) |
CVE-2008-6614
|
| FULLDISC:20080519 Mtr - remote and local stack overflow - uncomment situation in libresolv. |
CVE-2008-2357
|
| FULLDISC:20080604 Akamai Technologies Security Advisory 2008-0001 (Download Manager) |
CVE-2008-1770
|
| FULLDISC:20080618 Coming soon : Firefox 3 Release overflow |
CVE-2008-2786
|
| FULLDISC:20080618 NULL pointer in the HTTP/XML-RPC service of Crysis 1.21 |
CVE-2008-6712
|
| FULLDISC:20080626 Commtouch Anti-Spam Enterprise Gateway Cross Site Scripting (allowing domain credential theft) |
CVE-2008-3082
|
| FULLDISC:20080703 DDIVRT-2008-12-ServerView SnmpGetMibValues.exe Buffer Overflow |
CVE-2008-3126
|
| FULLDISC:20080704 Panda ActiveScan 2.0 remote code execution |
CVE-2008-3155
CVE-2008-3156
|
| FULLDISC:20080705 Panda ActiveScan 2.0 remote code execution |
CVE-2008-3155
CVE-2008-3156
|
| FULLDISC:20080709 Trixbox 2.6.1 and below, remote root shell through local file inclusion |
CVE-2008-6825
|
| FULLDISC:20080717 Vim: Insecure Temporary File Creation During Build: Arbitrary Code Execution |
CVE-2008-3294
|
| FULLDISC:20080723 Vulnerability Report: EMC Centera Universal Access |
CVE-2008-3370
|
| FULLDISC:20080728 Tool release: [evilgrade] - Using DNS cache poisoning to exploit poor update implementations |
CVE-2008-3433
CVE-2008-3434
CVE-2008-3435
CVE-2008-3436
CVE-2008-3437
CVE-2008-3438
CVE-2008-3439
CVE-2008-3440
CVE-2008-3441
CVE-2008-3442
|
| FULLDISC:20080731 Assurent VR - CA ARCserve Backup for Laptops and Desktops LGServer Handshake Buffer Overflow |
CVE-2008-3175
|
| FULLDISC:20080731 F-PROT antivirus 6.2.1.4252 infinite loop denial of service via malformed archive |
CVE-2008-3447
|
| FULLDISC:20080806 Webex atucfobj Module ActiveX Control Buffer Overflow Vulnerability |
CVE-2008-3558
|
| FULLDISC:20080814 SECOBJADV-2008-03: PartyGaming PartyPoker Malicious Update Vulnerability |
CVE-2008-3324
|
| FULLDISC:20080816 Nokia 6131 NFC URI/URL Spoofing and DoS Advisory |
CVE-2008-5825
CVE-2008-5826
|
| FULLDISC:20080821 DXShopCart V4.30mc search.php XSS |
CVE-2008-5119
|
| FULLDISC:20080821 Fujitsu Web-Based Admin View Directory Traversal Vulnerability |
CVE-2008-3776
|
| FULLDISC:20080822 ACG-PTP 1.0.6 index.php persistent XSS |
CVE-2008-3782
|
| FULLDISC:20080822 Photo Cart 3.9 index.php "search" XSS |
CVE-2008-3786
|
| FULLDISC:20080829 [scip_Advisory 3807] Dreambox DM500 webserver long URL request denial of service |
CVE-2008-3936
|
| FULLDISC:20080830 VMSA-2008-0014 Updates to VMware Workstation, VMware Player, VMware ACE, VMware Server, VMware ESX address information disclosure, privilege escalation and other security issues. |
CVE-2007-5269
CVE-2007-5438
CVE-2007-5503
CVE-2008-1447
CVE-2008-1806
CVE-2008-1807
CVE-2008-1808
CVE-2008-2101
CVE-2008-3691
CVE-2008-3692
CVE-2008-3693
CVE-2008-3694
CVE-2008-3695
CVE-2008-3696
CVE-2008-3697
CVE-2008-3698
CVE-2008-3892
|
| FULLDISC:20080902 DDIVRT-2008-13 AVTECH PageR Enterprise Directory Traversal |
CVE-2008-3939
|
| FULLDISC:20080902 DDIVRT-2008-14 3Com Wireless 8760 Dual Radio 11a/b/g PoE Access Point Malformed HTTP POST DoS |
CVE-2008-6395
|
| FULLDISC:20080905 [PLSA 2008-36] Ffmpeg: Multiple vulnerabilities |
CVE-2008-4866
CVE-2008-4867
CVE-2008-4868
CVE-2008-4869
|
| FULLDISC:20080908 [scip_Advisory 3808] D-Link DIR-100 long url filter evasion |
CVE-2008-4133
|
| FULLDISC:20080911 Clients format strings in the Unreal engine |
CVE-2008-6441
|
| FULLDISC:20080911 Server termination in the Unreal engine 3 |
CVE-2008-7015
|
| FULLDISC:20080912 Drupal Answers Module Contains XSS Vulnerability |
CVE-2008-6413
|
| FULLDISC:20080916 Failed assertion in the Unreal engine |
CVE-2008-7011
|
| FULLDISC:20080918 [IVIZ-08-010] McAfee SafeBoot Device Encryption Plain Text Password Disclosure (v4, Build 4750 and below) |
CVE-2008-7020
|
| FULLDISC:20080918 menalto gallery: Session hijacking vulnerability, CVE-2008-3662 |
CVE-2008-3662
|
| FULLDISC:20080924 Drupal Brilliant Gallery module SQL injection vulnerability |
CVE-2008-4338
|
| FULLDISC:20080929 WordPress MU < 2.6 wpmu-blogs.php Crose Site Scrpting vulnerability |
CVE-2008-4671
|
| FULLDISC:20081001 XSS in Celoxis project management software |
CVE-2008-6094
|
| FULLDISC:20081003 IRM Security Advisory: VeriSign Kontiki Delivery Management System (DMS) Cross-Site Scripting Vulnerability |
CVE-2008-4393
|
| FULLDISC:20081004 Blue Coat K9 Web Protection V4.0.230 Beta Vulnerability |
CVE-2008-4515
|
| FULLDISC:20081004 VMware Emulation Flaw x64 Guest Privilege Escalation (1/2) |
CVE-2008-4279
|
| FULLDISC:20081027 MyBB 1.4.2: Multiple Vulnerabilties |
CVE-2008-4928
CVE-2008-4929
CVE-2008-4930
|
| FULLDISC:20081103 Bitsec Security Advisory: UW/Panda IMAP [dt]mail buffer overflow |
CVE-2008-5005
|
| FULLDISC:20081106 DDIVRT-2008-17 Orb Directory Traversal |
CVE-2008-5645
|
| FULLDISC:20081108 Metrica Service Assurance Multiple Cross Site Scripting |
CVE-2008-5043
|
| FULLDISC:20081108 OpenBase SQL multiple vulnerabilities Part Deux |
CVE-2006-5851
|
| FULLDISC:20081108 [Full-disclosure] OpenBase SQL multiple vulnerabilities Part Deux |
CVE-2006-5852
|
| FULLDISC:20081109 ClamAV get_unicode_name() off-by-one buffer overflow |
CVE-2008-5050
|
| FULLDISC:20081113 Netgear WGR614v9 DoS to Admin Interface (internal and external) |
CVE-2008-6122
|
| FULLDISC:20081120 NatterChat 1.12 txtUsername and txtRoomName XSS |
CVE-2008-7048
|
| FULLDISC:20081121 DDIVRT-DDIVRT-2008-15 iPhone Configuration Web Utility 1.0 for Windows Directory Traversal |
CVE-2008-5315
|
| FULLDISC:20081122 [SVRT-04-08] Vulnerability in WireShark 1.0.4 for DoS Attack |
CVE-2008-5285
|
| FULLDISC:20081201 [BMSA 2008-09] Two buffer overflow vulnerabilities in Rumpus v6.0 |
CVE-2008-7078
|
| FULLDISC:20081203 [SVRT-06-08] MULTI SECURITY VULNERABILITIES IN MVNFORUM |
CVE-2008-5400
|
| FULLDISC:20081207 Multiple vulnerabilities in 3CX 6.0.806.0 |
CVE-2008-6894
CVE-2008-6895
CVE-2008-6896
|
| FULLDISC:20081208 Breaking Google Gears' Cross-Origin Communication Model |
CVE-2008-6512
|
| FULLDISC:20081210 Microsoft SQL Server 2005 sp_replwritetovarbin memory overwrite (update to SEC Consult SA-20081209) |
CVE-2008-5416
|
| FULLDISC:20081211 Checkpoint Sources plus SPLAT Remote Root Exploit |
CVE-2008-5850
|
| FULLDISC:20081221 CVE-2008-5557 - PHP mbstring buffer overflow |
CVE-2008-5557
|
| FULLDISC:20090107 Firefox 3.0.5 remote vulnerability via queryCommandState |
CVE-2009-0071
|
| FULLDISC:20090107 Re: Firefox 3.0.5 remote vulnerability via queryCommandState |
CVE-2009-0071
|
| FULLDISC:20090115 [TZO-2009-2] Avira Antivir - Priviledge escalation |
CVE-2009-2761
|
| FULLDISC:20090126 Solaris Devs Are Smoking Pot |
CVE-2009-0304
|
| FULLDISC:20090205 Drupal Link Module XSS Vulnerability |
CVE-2009-0603
|
| FULLDISC:20090208 Netgear SSL312 Router - remote DoS |
CVE-2009-0680
|
| FULLDISC:20090210 Craft Silicon Banking at Home SQL Injection |
CVE-2009-0741
|
| FULLDISC:20090214 FreeBSD zeroday |
CVE-2009-0641
|
| FULLDISC:20090222 Libero Cross-Site Scripting Vulnerability - Security Advisory - SOS-09-001 |
CVE-2009-0540
|
| FULLDISC:20090223 Magento Multiple Cross-Site Scripting Vulnerabilities - Security Advisory - SOS-09-002 |
CVE-2009-0541
|
| FULLDISC:20090227 HTC Touch vCard over IP Denial of Service PoC Code |
CVE-2008-6775
|
| FULLDISC:20090310 Assurent VR - IBM Tivoli Storage Manager Express Backup Server Heap Corruption |
CVE-2008-4563
|
| FULLDISC:20090312 Apple iTunes DAAP Messages Handling Denial of Service Vulnerability |
CVE-2009-0016
|
| FULLDISC:20090319 Pixie CMS Multiple Vulnerabilities |
CVE-2009-1066
CVE-2009-1067
|
| FULLDISC:20090319 Secure Computing (McAfee) Smart Filter possible issue |
CVE-2009-2312
CVE-2009-2429
|
| FULLDISC:20090330 Check Point Firewall-1 PKI Web Service HTTP Header Remote Overflow |
CVE-2009-1227
|
| FULLDISC:20090331 Cisco ASA5520 Web VPN Host Header XSS |
CVE-2009-1220
|
| FULLDISC:20090402 Layered Defense Research Advisory: Format String Vulnerability: FortiClient Version 3 |
CVE-2009-1262
|
| FULLDISC:20090403 VMSA-2009-0005 VMware Hosted products, VI Client and patches for ESX and ESXi resolve multiple security issues |
CVE-2008-3761
CVE-2008-4916
CVE-2009-0177
CVE-2009-0518
CVE-2009-0908
CVE-2009-0909
CVE-2009-0910
CVE-2009-1146
CVE-2009-1147
|
| FULLDISC:20090411 [BMSA 2009-04] Remote DoS in Internet Explorer |
CVE-2009-1335
|
| FULLDISC:20090416 [follow-up] razorCMS - Multiple Vulnerabilities |
CVE-2009-1458
CVE-2009-1459
CVE-2009-1460
CVE-2009-1461
CVE-2009-1462
CVE-2009-1463
|
| FULLDISC:20090416 razorCMS - Multiple Vulnerabilities |
CVE-2009-1458
CVE-2009-1459
CVE-2009-1460
CVE-2009-1462
CVE-2009-1463
|
| FULLDISC:20090417 ERNW Security Advisory 01-2009: XSS in Blackberries Mobile Data Service Connection Service |
CVE-2009-0307
|
| FULLDISC:20090422 DirectAdmin < 1.33.4 Local file overwrite & Local root escalation |
CVE-2009-1525
CVE-2009-1526
|
| FULLDISC:20090424 SumatraPDF <= 0.9.3 Heap Overflow PoC |
CVE-2009-1605
|
| FULLDISC:20090428 Positron Security Advisory #2009-001: Memcached and MemcacheDB ASLR Bypass Weakness |
CVE-2009-1255
|
| FULLDISC:20090514 eggdrop/windrop remote crash vulnerability |
CVE-2009-1789
|
| FULLDISC:20090515 IIS6 + webdav and unicode rides again in 2009 |
CVE-2009-1535
|
| FULLDISC:20090515 Re: IIS6 + webdav and unicode rides again in 2009 |
CVE-2009-1535
|
| FULLDISC:20090520 CORE-2009-0109 - Multiple XSS in Sun Communications Express |
CVE-2009-1729
|
| FULLDISC:20090525 Soulseek * P2P Remote Distributed Search Code Execution |
CVE-2009-1830
|
| FULLDISC:20090527 [TZO-27-2009] Firefox Denial of Service (Keygen) |
CVE-2009-1828
|
| FULLDISC:20090528 Re: [TZO-27-2009] Firefox Denial of Service (Keygen) |
CVE-2009-1828
|
| FULLDISC:20090618 Edraw PDF Viewer Component ActiveX Remote code execution vulnerability |
CVE-2009-2169
|
| FULLDISC:20090628 Baofeng Media Player playlist stack overflow |
CVE-2009-2617
|
| FULLDISC:20090629 Re: Baofeng Media Player playlist stack overflow |
CVE-2009-2617
|
| FULLDISC:20090708 MySQL <= 5.0.45 post auth format string vulnerability |
CVE-2009-2446
|
| FULLDISC:20090710 'Secure' Wyse thin clients vulnerable to remote exploit bugs |
CVE-2009-0693
CVE-2009-0695
|
| FULLDISC:20090716 Linux 2.6.30+/SELinux/RHEL5 test kernel 0day, exploiting the unexploitable |
CVE-2009-1897
|
| FULLDISC:20090716 Re: Linux 2.6.30+/SELinux/RHEL5 test kernel 0day, exploiting the unexploitable |
CVE-2009-1897
|
| FULLDISC:20090721 Update: [GSEC-TZO-44-2009] One bug to rule them all - Firefox, IE, Safari, Opera, Chrome, Seamonkey, iPhone, iPod, Wii, PS3.... |
CVE-2009-2575
|
| FULLDISC:20090722 Akamai Technologies Security Advisory 2009-0001 (Download Manager) |
CVE-2009-2582
|
| FULLDISC:20090810 WordPress <= 2.8.3 Remote admin reset password |
CVE-2009-2762
|
| FULLDISC:20090811 Sql injection in OCS Inventory NG Server 1.2.1 |
CVE-2009-3042
|
| FULLDISC:20090813 Linux NULL pointer dereference due to incorrect proto_ops initializations |
CVE-2009-2692
|
| FULLDISC:20090818 Kaspersky AV/IS 2010 (avp.exe) Denial-of-Service |
CVE-2009-2966
|
| FULLDISC:20090903 Microsoft Internet Information Services 5.0/6.0 FTP SERVER DENIAL OF SERVICE ("Stack Exhaustion") |
CVE-2009-2521
|
| FULLDISC:20090907 Windows Vista/7 : SMB2.0 NEGOTIATE PROTOCOL REQUEST Remote B.S.O.D. |
CVE-2009-3103
|
| FULLDISC:20090923 nginx - low risk webdav destination bug |
CVE-2009-3898
|
| FULLDISC:20090924 Cisco ACE XML Gateway <= 6.0 Internal IP disclosure |
CVE-2009-3457
|
| FULLDISC:20090925 Drupal Bibliography 6.x-1.6 XSS Vuln |
CVE-2009-3488
|
| FULLDISC:20091019 [Wordpress] Resource Exhaustion (Denial of Service) |
CVE-2009-3622
|
| FULLDISC:20091022 Everfocus EDR1600 remote authentication bypass |
CVE-2009-3828
|
| FULLDISC:20091022 Snort <= 2.8.5 IPV6 Remote DoS |
CVE-2009-3641
|
| FULLDISC:20091111 Re: SSL/TLS MiTM PoC |
CVE-2009-3555
|
| FULLDISC:20091111 Windows 7 , Server 2008R2 Remote Kernel Crash |
CVE-2009-3676
|
| FULLDISC:20091111 WordPress <= 2.8.5 Unrestricted File Upload Arbitrary PHP Code Execution |
CVE-2009-3890
|
| FULLDISC:20091112 Re: WordPress <= 2.8.5 Unrestricted File Upload Arbitrary PHP Code Execution |
CVE-2009-3890
|
| FULLDISC:20091117 CORE-2009-0814: HP Openview NNM 7.53 Invalid DB Error Code vulnerability |
CVE-2009-3840
CVE-2009-3977
|
| FULLDISC:20091120 PHP "multipart/form-data" denial of service |
CVE-2009-4017
|
| FULLDISC:20091123 Quick.Cart and Quick.CMS CSRF Vulnerabilities |
CVE-2009-4120
CVE-2009-4121
|
| FULLDISC:20091125 Cacti 0.8.7e: Multiple security issues |
CVE-2009-4032
CVE-2009-4112
|
| FULLDISC:20091128 MuPDF pdf_shade4.c multiple stack-based buffer overflows |
CVE-2009-4117
|
| FULLDISC:20091209 CORE-2009-1013: Multiple XSS and Injection Vulnerabilities in TestLink Test Management and Execution System |
CVE-2009-4237
CVE-2009-4238
|
| FULLDISC:20091213 [gif2png] long filename Buffer Overrun |
CVE-2009-5018
|
| FULLDISC:20091216 VideoCache 1.9.2 vccleaner root vulnerability |
CVE-2009-4454
|
| FULLDISC:20091217 [ISecAuditors Security Advisories] Horde 3.3.5 "PHP_SELF" Cross-Site Scripting vulnerability |
CVE-2009-3701
|
| FULLDISC:20091218 [ISecAuditors Security Advisories] Simple PHP Blog <= 0.5.1 Local File Include vulnerability |
CVE-2009-4421
|
| FULLDISC:20091223 XSS in WebMathematica |
CVE-2009-4812
CVE-2009-4814
|
| FULLDISC:20100114 Locked fasync file descriptors can be referenced after free in >= 2.6.28 |
CVE-2009-4141
|
| FULLDISC:20100119 Microsoft Windows NT #GP Trap Handler Allows Users to Switch Kernel Stack |
CVE-2010-0232
|
| FULLDISC:20100120 Insufficient User Input Validation in VP-ASP 6.50 Demo Code |
CVE-2010-1588
CVE-2010-1589
CVE-2010-1590
|
| FULLDISC:20100122 Silverstripe <= v2.3.4: two XSS vulnerabilities |
CVE-2010-1593
|
| FULLDISC:20100125 DDIVRT-2009-27 F2L-3000 files2links SQL Injection Vulnerability |
CVE-2010-0469
|
| FULLDISC:20100127 Apple Iphone/Ipod - Serversman 3.1.5 HTTP Remote DoS exploit |
CVE-2010-0496
|
| FULLDISC:20100127 Mod_proxy from apache 1.3 - Integer overflow which causes heap overflow. |
CVE-2010-0010
|
| FULLDISC:20100128 PR09-19: Cross-Site Scripting (XSS) on CommonSpot server |
CVE-2010-0468
|
| FULLDISC:20100204 Re: Samba Remote Zero-Day Exploit |
CVE-2010-0926
|
| FULLDISC:20100204 Samba Remote Zero-Day Exploit |
CVE-2010-0926
|
| FULLDISC:20100204 Sterlite SAM300AX ADSL router - Cross Site |
CVE-2010-0607
|
| FULLDISC:20100205 Re: Samba Remote Zero-Day Exploit |
CVE-2010-0926
|
| FULLDISC:20100211 [Onapsis Security Advisory 2010-003] SAP WebDynpro Runtime XSS/CSS Injection |
CVE-2010-1609
|
| FULLDISC:20100223 CA20100223-01: Security Notice for CA eHealth Performance Manager |
CVE-2010-0640
|
| FULLDISC:20100303 fcrontab Information Disclosure Vulnerability |
CVE-2010-0792
|
| FULLDISC:20100304 Apple Airport Wireless Products: Promiscuous FTP PORT Allowed in FTP Proxy Provides Security Bypass |
CVE-2010-0962
|
| FULLDISC:20100305 ncpfs, Multiple Vulnerabilities |
CVE-2010-0788
CVE-2010-0790
CVE-2010-0791
|
| FULLDISC:20100307 Spamassassin Milter Plugin Remote Root |
CVE-2010-1132
|
| FULLDISC:20100401 Zabbix <= 1.8.1 SQL Injection |
CVE-2010-1277
|
| FULLDISC:20100409 Java Deployment Toolkit Performs Insufficient Validation of Parameters |
CVE-2010-1423
|
| FULLDISC:20100409 VMSA-2010-0007 VMware hosted products, vCenter Server and ESX patches resolve multiple security issues |
CVE-2009-1564
CVE-2009-1565
CVE-2009-2042
CVE-2009-3707
CVE-2009-3732
CVE-2009-4811
CVE-2010-1138
CVE-2010-1139
CVE-2010-1140
CVE-2010-1141
CVE-2010-1142
|
| FULLDISC:20100419 [CORELAN-10-026] TweakFS Zip Stack BOF |
CVE-2010-1458
|
| FULLDISC:20100421 Bonsai Information Security - SQL Injection in Cacti <= 0.8.7e |
CVE-2010-1431
|
| FULLDISC:20100422 Apache ActiveMQ is prone to source code disclosure vulnerability. |
CVE-2010-1587
|
| FULLDISC:20100427 Fun with FORTIFY_SOURCE |
CVE-2010-3192
|
| FULLDISC:20100504 [CORE-2010-0427] Windows SMTP Service DNS query Id vulnerabilities |
CVE-2010-1689
CVE-2010-1690
|
| FULLDISC:20100505 KHOBE - 8.0 earthquake for Windows desktop security software |
CVE-2010-5150
CVE-2010-5151
CVE-2010-5152
CVE-2010-5153
CVE-2010-5154
CVE-2010-5155
CVE-2010-5156
CVE-2010-5157
CVE-2010-5158
CVE-2010-5159
CVE-2010-5160
CVE-2010-5161
CVE-2010-5162
CVE-2010-5163
CVE-2010-5164
CVE-2010-5165
CVE-2010-5166
CVE-2010-5167
CVE-2010-5168
CVE-2010-5169
CVE-2010-5170
CVE-2010-5171
CVE-2010-5172
CVE-2010-5173
CVE-2010-5174
CVE-2010-5175
CVE-2010-5176
CVE-2010-5177
CVE-2010-5178
CVE-2010-5179
CVE-2010-5180
CVE-2010-5181
CVE-2010-5182
CVE-2010-5183
CVE-2010-5184
|
| FULLDISC:20100511 Multiple memory corruption vulnerabilities in Ghostscript |
CVE-2010-1628
|
| FULLDISC:20100511 [CAL-20100204-1]Adobe Shockwave Player Director File Parsing ATOM size infinite loop vulnerability |
CVE-2010-1282
|
| FULLDISC:20100511 [CAL-20100204-2]Adobe Shockwave Player Director File Parsing integer overflow vulnerability |
CVE-2010-0129
|
| FULLDISC:20100511 [CAL-20100204-3]Adobe Shockwave Player Director File Parsing RCSL Pointer Overwrite |
CVE-2010-1280
|
| FULLDISC:20100512 Drupal storm 1.32 |
CVE-2010-2123
|
| FULLDISC:20100514 Mathematica on Linux /tmp/MathLink vulnerability |
CVE-2010-2027
|
| FULLDISC:20100520 Drupal Chaos Tools Suite (Ctools) Module Multiple Vulns |
CVE-2010-1546
CVE-2010-1547
CVE-2010-1548
|
| FULLDISC:20100524 Scientific Atlanta DPC2100 WebSTAR Cable Modem vulnerabilities |
CVE-2010-2025
CVE-2010-2026
CVE-2010-2082
|
| FULLDISC:20100529 Websense Enterprise 6.3.3 Policy Bypass |
CVE-2010-5144
|
| FULLDISC:20100602 Wing FTP Server - Cross Site Scripting Vulnerability |
CVE-2010-2428
|
| FULLDISC:20100603 Multiple vulnerabilities in Exim |
CVE-2010-2023
CVE-2010-2024
|
| FULLDISC:20100603 RSA Key Manager SQL injection Vulnerability ( CVE-2010-1904 ) |
CVE-2010-1904
|
| FULLDISC:20100607 Re: Wing FTP Server - Cross Site Scripting Vulnerability |
CVE-2010-2428
|
| FULLDISC:20100609 Microsoft Windows Help Centre Handles Malformed Escape Sequences Incorrectly |
CVE-2010-1885
CVE-2010-2265
|
| FULLDISC:20100612 Fw: [irc-security] UnrealIRCd 3.2.8.1 backdoored on official ftp and site |
CVE-2010-2075
|
| FULLDISC:20100612 Re: Fw: [irc-security] UnrealIRCd 3.2.8.1 backdoored on official ftp and site |
CVE-2010-2075
|
| FULLDISC:20100613 Litespeed Technologies Web Server Remote Poison null byte Zero-Day |
CVE-2010-2333
|
| FULLDISC:20100616 [Onapsis Security Advisory 2010-005] SAP J2EE Telnet Administration Security Check Bypass |
CVE-2010-2347
|
| FULLDISC:20100629 Miyabi CGI Tools index.pl command execution |
CVE-2010-2626
|
| FULLDISC:20100629 Re: Miyabi CGI Tools index.pl command execution |
CVE-2010-2626
|
| FULLDISC:20100630 MSRC-001: Windows Vista/Server 2008 NtUserCheckAccessForIntegrityLevel Use-after-free Vulnerability |
CVE-2010-2549
|
| FULLDISC:20100701 DDIVRT-2010-29 ALPHA Ethernet Adapter II Web-Manager 3.40.2 Authentication Bypass |
CVE-2010-2668
|
| FULLDISC:20100702 TELUS Security Labs VR - iSCSI target Multiple Implementations iSNS Stack Buffer Overflow |
CVE-2010-2221
|
| FULLDISC:20100713 CVE-2010-1870: Struts2 remote commands execution |
CVE-2010-1870
|
| FULLDISC:20100718 --== ~ AIX5l w/ FTP-SERVER REMOTE ROOT HASH DISCLOSURE EXPLOIT ~ =-- |
CVE-2010-3187
|
| FULLDISC:20100722 Re: --== ~ AIX5l w/ FTP-SERVER REMOTE ROOT HASH DISCLOSURE EXPLOIT ~ =-- |
CVE-2010-3187
|
| FULLDISC:20100723 Advanced AIX 5l FTPd Exploit |
CVE-2010-3187
|
| FULLDISC:20100723 Advanced AIX 5l FTPd Exploit V2.0 |
CVE-2010-3187
|
| FULLDISC:20100802 TWSL2010-003: Unauthorized access to root NFS export on EMC Celerra NAS appliance |
CVE-2010-2860
|
| FULLDISC:20100804 Heap Offset Overflow in Citrix ICA Clients |
CVE-2010-2990
|
| FULLDISC:20100807 openssl-1.0.0a |
CVE-2010-2939
|
| FULLDISC:20100814 IE8 toStaticHtml Bypass |
CVE-2010-3324
|
| FULLDISC:20100817 CVE-2010-2234: Apache CouchDB Cross Site Request Forgery Attack |
CVE-2010-2234
|
| FULLDISC:20100822 VWar 1.6.1 R2 Multiple Remote Vulnerabilities |
CVE-2010-5063
CVE-2010-5064
CVE-2010-5065
CVE-2010-5066
CVE-2010-5067
CVE-2010-5279
|
| FULLDISC:20100826 CAD 2D-3D Pipe designing software Microstation, Nero, Quicktime Pictureviwer vulnerable to DLL hijack attack |
CVE-2010-5230
|
| FULLDISC:20100826 Multiple Vulnerabilities in EncFS |
CVE-2010-3073
CVE-2010-3074
CVE-2010-3075
|
| FULLDISC:20100828 QtWeb Browser version 3.3 build 043 Insecure DLL Hijacking Vulnerability (wintab32.dll) |
CVE-2010-5247
|
| FULLDISC:20100906 XSS in Horde Application Framework <=3.3.8, icon_browser.php |
CVE-2010-3077
|
| FULLDISC:20100912 UltraEdit Text Editor version 16.10.0.1036 <= Insecure DLL Hijacking Vulnerability (dwmapi.dll) |
CVE-2010-3402
|
| FULLDISC:20100916 Ac1db1tch3z vs x86_64 Linux Kernel |
CVE-2010-3081
|
| FULLDISC:20100916 Workaround for Ac1db1tch3z exploit. |
CVE-2010-3081
|
| FULLDISC:20100922 OpenText LiveLink 9.7.1 multiple vulnerabilities (CSRF, XSS) |
CVE-2010-5282
CVE-2010-5283
|
| FULLDISC:20100927 XSS in Horde IMP <=4.3.7, fetchmailprefs.php |
CVE-2010-3695
|
| FULLDISC:20101018 The GNU C library dynamic linker expands $ORIGIN in setuid library search path |
CVE-2010-3847
|
| FULLDISC:20101019 Re: The GNU C library dynamic linker expands $ORIGIN in setuid library search path |
CVE-2010-3847
|
| FULLDISC:20101020 Re: The GNU C library dynamic linker expands $ORIGIN in setuid library search path |
CVE-2010-3847
|
| FULLDISC:20101022 The GNU C library dynamic linker will dlopen arbitrary DSOs during setuid loads. |
CVE-2010-3856
|
| FULLDISC:20101031 'WSN Links' SQL Injection Vulnerability (CVE-2010-4006) |
CVE-2010-4006
|
| FULLDISC:20101031 Joomla 1.5.21 | Potential SQL Injection Flaws |
CVE-2010-4166
|
| FULLDISC:20101102 CVE-2010-3863: Apache Shiro information disclosure vulnerability |
CVE-2010-3863
|
| FULLDISC:20101102 fusermount: Unmount any filesystem |
CVE-2010-3879
|
| FULLDISC:20101103 [0dayz] Acrobat Reader Memory Corruption Remote Arbitrary Code Execution |
CVE-2010-4091
|
| FULLDISC:20101105 nSense-2010-003: Cisco Unified Communications Manager |
CVE-2010-3039
|
| FULLDISC:20101106 pfsense xss issues. |
CVE-2010-4246
CVE-2010-4412
|
| FULLDISC:20101107 ASPilot Pilot Cart 7.3 multiple vulnerabilities |
CVE-2010-4631
CVE-2010-4632
|
| FULLDISC:20101107 ZDI-10-230: Novell ZENworks Handheld Management ZfHIPCND.exe Remote Code Execution Vulnerability |
CVE-2010-4299
|
| FULLDISC:20101109 Kernel 0-day |
CVE-2010-4158
|
| FULLDISC:20101117 Cisco Unified Videoconferencing multiple vulnerabilities - CVE-2010-3037 CVE-2010-3038 |
CVE-2010-3037
CVE-2010-3038
CVE-2010-4302
CVE-2010-4303
CVE-2010-4304
CVE-2010-4305
|
| FULLDISC:20101122 [SECURITY] CVE-2010-4172: Apache Tomcat Manager application XSS vulnerability |
CVE-2010-4172
|
| FULLDISC:20101130 Pandora FMS Authentication Bypass and Multiple Input Validation Vulnerabilities |
CVE-2010-4278
CVE-2010-4279
CVE-2010-4280
CVE-2010-4281
CVE-2010-4282
CVE-2010-4283
|
| FULLDISC:20101207 Linux kernel exploit |
CVE-2010-3849
CVE-2010-3850
CVE-2010-4258
|
| FULLDISC:20101208 IE CSS parser dos bug |
CVE-2010-3971
|
| FULLDISC:20101210 PHP 5.3.3 GD extension imagepstext stack buffer overflow |
CVE-2010-4698
|
| FULLDISC:20101213 hidden admin user on every HP MSA2000 G3 |
CVE-2010-4115
|
| FULLDISC:20101214 xss in PmWiki |
CVE-2010-4748
|
| FULLDISC:20101223 Django admin list filter data extraction / leakage |
CVE-2010-4534
|
| FULLDISC:20101227 LiveZilla Cross Site Scripting Vulnerability (XSS) - CVE-2010-4276 |
CVE-2010-4276
|
| FULLDISC:20110101 Announcing cross_fuzz, a potential 0-day in circulation, and more |
CVE-2011-0346
CVE-2011-0347
|
| FULLDISC:20110106 RoomWizard Default Password and Sync Connector Credential Leak [CVE-2010-0214] |
CVE-2010-0214
CVE-2011-0423
|
| FULLDISC:20110107 GNU libc/regcomp(3) Multiple Vulnerabilities |
CVE-2010-4051
CVE-2010-4052
|
| FULLDISC:20110108 NetSupport Manager Agent Remote Buffer Overflow (Linux, Solaris, Mac, ...) |
CVE-2011-0404
|
| FULLDISC:20110122 Proc filesystem and SUID-Binaries |
CVE-2011-1020
|
| FULLDISC:20110128 Vulnerabilities in Adobe ColdFusion |
CVE-2011-0733
CVE-2011-0734
CVE-2011-0735
CVE-2011-0736
CVE-2011-0737
|
| FULLDISC:20110201 Zikula CMS 1.2.4 <= Cross Site Request Forgery (CSRF) Vulnerability |
CVE-2011-0535
|
| FULLDISC:20110211 [SECURITY] CVE-2010-3449: Apache Continuum CSRF vulnerability |
CVE-2010-3449
|
| FULLDISC:20110211 [SECURITY] CVE-2011-0533: Apache Continuum cross-site scripting vulnerability |
CVE-2011-0533
|
| FULLDISC:20110214 MS Windows Server 2003 AD Pre-Auth BROWSER ELECTION Remote Heap Overflow |
CVE-2011-0654
|
| FULLDISC:20110216 Ruby on Rails Vulnerability |
CVE-2011-3187
|
| FULLDISC:20110222 Developers should not rely on the stickiness of /tmp on Red Hat Linux |
CVE-2011-1011
|
| FULLDISC:20110224 glibc and alloca() |
CVE-2011-1071
|
| FULLDISC:20110226 Re: glibc and alloca() |
CVE-2011-1071
|
| FULLDISC:20110227 weechat does not properly use gnutls and allow an attacker to bypass certificate verification |
CVE-2011-1428
|
| FULLDISC:20110228 BackWPup Wordpress plugin <= 1.4.0 File content disclosure |
CVE-2011-5208
|
| FULLDISC:20110228 FreeBSD crontab information leakage |
CVE-2011-1073
CVE-2011-1074
|
| FULLDISC:20110301 DDIVRT-2010-30 Alcatel-Lucent OmniVista 4760 NMS 'lang' Directory Traversal Vulnerability [ CVE-2011-0345 ] |
CVE-2011-0345
|
| FULLDISC:20110308 Mutt: failure to check server certificate in SMTP TLS connection |
CVE-2011-1429
|
| FULLDISC:20110317 Recaptcha Word Press Plugin Cross Site Scripting Vulnerability - CVE-2011-0759 |
CVE-2011-0759
|
| FULLDISC:20110317 Related Posts Word Press Plugin Cross Site Scripting Vulnerability - CVE-2011-0760 |
CVE-2011-0760
|
| FULLDISC:20110328 Android SDK: Segmentation fault with dexdump / dexDecodeDebugInfo |
CVE-2011-1001
|
| FULLDISC:20110328 Wordpress plugin BackWPup Remote and Local Code Execution Vulnerability - SOS-11-003 |
CVE-2011-4342
|
| FULLDISC:20110401 BSD derived RFC3173 IPComp encapsulation will expand arbitrarily nested payload |
CVE-2011-1547
|
| FULLDISC:20110405 ICMPv6 Router Announcement flooding denial of service affecting multiple systems |
CVE-2011-2393
|
| FULLDISC:20110406 [SECURITY] CVE-2011-1183 Apache Tomcat security constraint bypass |
CVE-2011-1183
|
| FULLDISC:20110406 [SECURITY] CVE-2011-1475 Apache Tomcat information disclosure |
CVE-2011-1475
|
| FULLDISC:20110415 Another Microsoft (and other) IPv6 security issue: sniffer detection |
CVE-2010-4562
CVE-2010-4563
|
| FULLDISC:20110502 Re: ZDI-11-143: Cisco Unified CallManager xmldirectorylist.jsp SQL Injection Vulnerability |
CVE-2011-1604
CVE-2011-1605
CVE-2011-1606
CVE-2011-1607
CVE-2011-1609
CVE-2011-1610
|
| FULLDISC:20110518 Cisco Unified Operations Manager Multiple Vulnerabilities - SOS-11-006 |
CVE-2011-0959
CVE-2011-0960
CVE-2011-0961
CVE-2011-0962
CVE-2011-0966
|
| FULLDISC:20110523 Bypassing Cisco's ICMPv6 Router Advertisement Guard feature |
CVE-2011-2395
|
| FULLDISC:20110531 [CVE-2011-1026] Apache Archiva Multiple CSRF vulnerabilities |
CVE-2011-1026
|
| FULLDISC:20110531 [CVE-2011-1077] Apache Archiva Multiple XSS vulnerabilities |
CVE-2011-1077
|
| FULLDISC:20110601 cherokee server admin vulnerable to csrf |
CVE-2011-2191
|
| FULLDISC:20110724 phpMyAdmin 3.x Conditional Session Manipulation |
CVE-2011-2719
|
| FULLDISC:20110728 Two security issues fixed in ioQuake3 engine |
CVE-2011-1412
CVE-2011-2764
CVE-2011-3012
|
| FULLDISC:20110801 Useless OpenSSH resources exhausion bug via GSSAPI |
CVE-2011-5000
|
| FULLDISC:20110802 Android Browser Cross-Application Scripting (CVE-2011-2357) |
CVE-2011-2357
|
| FULLDISC:20110811 CVE-2011-0527: VMware vFabric tc Server password obfuscation bypass |
CVE-2011-0527
|
| FULLDISC:20110819 PHP 5.3.6 multiple null pointer dereference |
CVE-2011-3182
|
| FULLDISC:20110820 Apache Killer |
CVE-2011-3192
|
| FULLDISC:20110824 Re: Apache Killer |
CVE-2011-3192
|
| FULLDISC:20110916 PunBB PHP Forum - Multiple XSS |
CVE-2011-3371
|
| FULLDISC:20110918 Re: PunBB PHP Forum - Multiple XSS |
CVE-2011-3371
|
| FULLDISC:20110922 Re: PunBB PHP Forum - Multiple XSS |
CVE-2011-3371
|
| FULLDISC:20110926 [CVE-2011-3645] Multiple vulnerability in "Omnidocs" |
CVE-2011-3645
|
| FULLDISC:20111004 vTiger CRM 5.2.x <= Multiple Cross Site Scripting Vulnerabilities |
CVE-2011-4670
|
| FULLDISC:20111005 Apache HTTP Server: mod_proxy reverse proxy exposure (CVE-2011-3368) |
CVE-2011-3368
|
| FULLDISC:20111005 Context IS Advisory - Apache Reverse Proxy Bypass Vulnerability |
CVE-2011-3368
|
| FULLDISC:20111005 vTiger CRM 5.2.x <= Blind SQL Injection Vulnerability |
CVE-2011-4559
|
| FULLDISC:20111005 vTiger CRM 5.2.x <= Remote Code Execution Vulnerability |
CVE-2007-3215
|
| FULLDISC:20111102 Integer Overflow in Apache ap_pregsub via mod-setenvif |
CVE-2011-3607
|
| FULLDISC:20111102 PhpMyAdmin Arbitrary File Reading |
CVE-2011-4107
|
| FULLDISC:20111109 osCSS2 "_ID" parameter Local file inclusion |
CVE-2011-4713
|
| FULLDISC:20111110 XSS vulnerability in Joomla 1.6.3 |
CVE-2011-4332
|
| FULLDISC:20111110 [FOREGROUND SECURITY 2011-004] Infoblox NetMRI 6.2.1 Multiple Cross-Site Scripting (XSS) vulnerabilities |
CVE-2011-5178
|
| FULLDISC:20111118 Blogs manager <= 1.101 SQL Injection Vulnerability |
CVE-2011-5110
|
| FULLDISC:20111118 Freelancer calendar <= 1.01 SQL Injection Vulnerability |
CVE-2011-5109
|
| FULLDISC:20111119 Valid tiny-erp <= 1.6 SQL Injection Vulnerability |
CVE-2011-4672
|
| FULLDISC:20111130 Serv-U Remote |
CVE-2011-4800
|
| FULLDISC:20111203 VSFTPD Remote Heap Overrun (low severity) |
CVE-2009-5029
|
| FULLDISC:20111206 Backdoor in EPractize Labs Online Subscription Manager from epractizelabs.com |
CVE-2011-5136
|
| FULLDISC:20111218 Novell Sentinel Log Manager <=1.2.0.1 Path Traversal |
CVE-2011-5028
|
| FULLDISC:20111229 Akiva Webboard 8.x SQL Injection + Plaintext Passwords. |
CVE-2011-5203
CVE-2011-5204
|
| FULLDISC:20120103 SQL Injection Vulnerability in OpenEMR 4.1.0 |
CVE-2012-2115
|
| FULLDISC:20120109 DDIVRT-2011-37 HP JetDirect Device Page Directory Traversal (CVE-2011-4785) |
CVE-2011-4785
|
| FULLDISC:20120116 Zimbra Desktop v7.1.2 - Persistent Software Vulnerability |
CVE-2012-0903
|
| FULLDISC:20120119 Advisory 01/2012: Suhosin PHP Extension Transparent Cookie Encryption Stack Buffer Overflow |
CVE-2012-0807
|
| FULLDISC:20120120 Snitz Communications 2010/11 - SQL Injection Vulnerability |
CVE-2012-5313
|
| FULLDISC:20120125 NX Web Companion Spoofing Arbitrary Code Execution Vulnerability |
CVE-2012-5003
|
| FULLDISC:20120130 Advisory: sudo 1.8 Format String Vulnerability |
CVE-2012-0809
|
| FULLDISC:20120205 NexorONE Online Banking - Multiple Cross Site Vulnerabilities |
CVE-2012-1020
|
| FULLDISC:20120210 CVE-2012-1037: GLPI <= 0.80.61 LFI/RFI |
CVE-2012-1037
|
| FULLDISC:20120224 TWSL2012-003: Cross-Site Scripting Vulnerability in Movable Type Publishing Platform |
CVE-2012-1262
|
| FULLDISC:20120301 lashFXP v4.1.8.1701 - Buffer Overflow Vulnerability |
CVE-2012-4992
|
| FULLDISC:20120320 FreePBX remote command execution, xss |
CVE-2012-4869
CVE-2012-4870
|
| FULLDISC:20120321 atheme.org Security Advisory ASA-2012-03-01: Improper cleanup of CertFP entries may result in undefined behaviour |
CVE-2012-1576
|
| FULLDISC:20120322 [ANNOUNCE] Apache Traffic Server releases for security incident CVE-2012-0256 |
CVE-2012-0256
|
| FULLDISC:20120328 SEC Consult SA-20120328-0 :: F5 FirePass SSL VPN unauthenticated remote root through SQL injection - CVE-2012-1777 |
CVE-2012-1777
|
| FULLDISC:20120405 [CVE-2012-1574] Apache Hadoop user impersonation vulnerability |
CVE-2012-1574
|
| FULLDISC:20120418 The history of a -probably- 13 years old Oracle bug: TNS Poison |
CVE-2012-1675
|
| FULLDISC:20120419 incorrect integer conversions in OpenSSL can result in memory corruption. |
CVE-2012-2110
|
| FULLDISC:20120423 RuggedCom - Backdoor Accounts in my SCADA network? You don't say... |
CVE-2012-1803
CVE-2012-2441
|
| FULLDISC:20120428 Oracle TNS Poison vulnerability is actually a 0day with no patch available |
CVE-2012-1675
|
| FULLDISC:20120516 JW player xss security flaw |
CVE-2012-2904
|
| FULLDISC:20120522 session stealing in mod_auth_openid - CVE-2012-2760 |
CVE-2012-2760
|
| FULLDISC:20120610 [CVE-2012-3238] Astaro Security Gateway <= v8.304 Persistent Cross-Site Scripting Vulnerability |
CVE-2012-3238
|
| FULLDISC:20120612 Strange gpg key shadowing |
CVE-2012-0954
CVE-2012-3587
|
| FULLDISC:20120614 Using second gpg keyring may be misleading? |
CVE-2012-0954
|
| FULLDISC:20120615 ubuntu apt-key (part 3) |
CVE-2012-0954
|
| FULLDISC:20120624 CVE-2012-2380: Apache Roller Cross-Site-Resource-Forgery (XSRF) vulnerability |
CVE-2012-2380
|
| FULLDISC:20120624 CVE-2012-2381: Apache Roller Cross-Site-Scripting (XSS) vulnerability |
CVE-2012-2381
|
| FULLDISC:20120726 Transmission BitTorrent XSS Vulnerability |
CVE-2012-4037
|
| FULLDISC:20120729 Re: AxMan ActiveX fuzzing <== Memory Corruption PoC |
CVE-2012-4177
|
| FULLDISC:20120801 nvidia linux binary driver priv escalation exploit |
CVE-2012-4225
|
| FULLDISC:20120804 nvidia linux binary driver priv escalation exploit |
CVE-2012-4225
|
| FULLDISC:20120811 OS X Local Root: Silly SUID Helper in Tunnel Blick |
CVE-2012-3483
CVE-2012-3484
CVE-2012-3485
CVE-2012-3486
CVE-2012-3487
CVE-2012-4676
|
| FULLDISC:20120823 foxit reader 5.3.1(dwmapi.dll) DLL Hijacking Exploit |
CVE-2012-4759
|
| FULLDISC:20120906 Authentication flaw in APS-Soft DTE Axiom (CVE-2012-2455) |
CVE-2012-2455
|
| FULLDISC:20120921 DDIVRT-2012-42 Novell GroupWise Agents Arbitrary File Retrieval (CVE-2012-0419) |
CVE-2012-0419
|
| FULLDISC:20121001 BF, XSS, CSRF and Redirector vulnerabilities in IBM Lotus Notes Traveler |
CVE-2012-4824
CVE-2012-4825
CVE-2012-5307
CVE-2012-5308
CVE-2012-5309
|
| FULLDISC:20121003 Novell Sentinel Log Manager <= 1.2.0.2 retention policy vulnerability |
CVE-2012-6534
|
| FULLDISC:20121017 SEC Consult SA-20121017-0 :: ModSecurity multipart/invalid part ruleset bypass |
CVE-2012-4528
|
| FULLDISC:20121022 [ANNOUNCE] Apache OFBiz 10.04.03 released |
CVE-2012-3506
|
| FULLDISC:20121026 Realplayer Watchfolders Long Filepath Overflow |
CVE-2012-4987
|
| FULLDISC:20121201 FreeFTPD Remote Authentication Bypass Zeroday Exploit (Stuxnet technique) |
CVE-2012-6067
|
| FULLDISC:20121201 FreeSSHD Remote Authentication Bypass Zeroday Exploit |
CVE-2012-6066
|
| FULLDISC:20121201 MySQL (Linux) Database Privilege Elevation Zeroday Exploit |
CVE-2012-5613
|
| FULLDISC:20121201 MySQL (Linux) Heap Based Overrun PoC Zeroday |
CVE-2012-5612
|
| FULLDISC:20121201 MySQL (Linux) Stack based buffer overrun PoC Zeroday |
CVE-2012-5611
|
| FULLDISC:20121201 MySQL Denial of Service Zeroday PoC |
CVE-2012-5614
|
| FULLDISC:20121201 MySQL Remote Preauth User Enumeration Zeroday |
CVE-2012-5615
|
| FULLDISC:20121201 SSH.com Communications SSH Tectia Authentication Bypass Remote Zeroday Exploit |
CVE-2012-5975
|
| FULLDISC:20121203 Re: SSH.com Communications SSH Tectia Authentication Bypass Remote Zeroday Exploit (king cope) |
CVE-2012-5975
|
| FULLDISC:20121209 Nagios Core 3.4.3: Stack based buffer overflow in web interface |
CVE-2012-6096
|
| FULLDISC:20130110 CVE-2012-5616: Apache CloudStack information disclosure vulnerability |
CVE-2012-5616
|
| FULLDISC:20130118 [SE-2012-01] Java 7 Update 11 confirmed to be vulnerable |
CVE-2013-0431
CVE-2013-1490
|
| FULLDISC:20130122 Re: [SE-2012-01] Java 7 Update 11 confirmed to be vulnerable |
CVE-2013-0431
CVE-2013-1490
|
| FULLDISC:20130127 [SE-2012-01] An issue with new Java SE 7 security features |
CVE-2013-1489
|
| FULLDISC:20130208 New security advisories for Apache CXF |
CVE-2012-5633
CVE-2013-0239
|
| FULLDISC:20130218 XSS vulnerabilities in ZeroClipboard |
CVE-2012-6550
CVE-2013-1808
|
| FULLDISC:20130301 Oracle Auto Service Request /tmp file clobbering vulnerability |
CVE-2013-1495
|
| FULLDISC:20130305 Apache Subversion mod_dav_svn DoS via MKACTIVITY/PROPFIND |
CVE-2013-1849
|
| FULLDISC:20130312 Curl Ruby Gem Remote command execution |
CVE-2013-2617
|
| FULLDISC:20130312 MiniMagic ruby gem remote code execution |
CVE-2013-2616
|
| FULLDISC:20130312 Ruby gem fastreader-1.0.8 remote code exec |
CVE-2013-2615
|
| FULLDISC:20130313 [Security-news] SA-CONTRIB-2013-034 - Node Parameter Control - Access Bypass |
CVE-2013-1859
|
| FULLDISC:20130318 Remote command execution in Ruby Gem Command Wrap |
CVE-2013-1875
|
| FULLDISC:20130320 [Security-news] SA-CONTRIB-2013-035 - Views - Cross Site Scripting (XSS) |
CVE-2013-1887
|
| FULLDISC:20130323 Backupbuddy wordpress plugin - sensitive data exposure in importbuddy.php |
CVE-2013-2741
CVE-2013-2742
CVE-2013-2743
CVE-2013-2744
|
| FULLDISC:20130326 Ruby gem Thumbshooter 0.1.5 remote command execution |
CVE-2013-1898
|
| FULLDISC:20130331 WP FuneralPress - Stored XSS in Guestbook |
CVE-2013-3529
|
| FULLDISC:20130407 Vanilla Forums 2.0.18 / SQL-Injection / Insert arbitrary user & dump usertable |
CVE-2013-3527
|
| FULLDISC:20130409 [waraxe-2013-SA#102] - Reflected XSS in phpMyAdmin 3.5.7 |
CVE-2013-1937
|
| FULLDISC:20130501 n.runs-SA-2013.005 - IBM Lotus Notes - arbitrary code execution |
CVE-2013-0127
|
| FULLDISC:[Full-disclosure] Secunia Research: SqWebMail HTML Emails Script Insertion Vulnerability |
CVE-2005-2769
|