Export limit exceeded: 373148 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Search

Search Results (373148 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-1999-0608 1 Pdgsoft 1 Pdg Shopping Cart 2026-04-16 N/A
An incorrect configuration of the PDG Shopping Cart CGI program "shopper.cgi" could disclose private information.
CVE-1999-0609 1 Mercantec 1 Softcart 2026-04-16 N/A
An incorrect configuration of the SoftCart CGI program "SoftCart.exe" could disclose private information.
CVE-1999-0610 1 Mountain Network Systems 1 Webcart 2026-04-16 N/A
An incorrect configuration of the Webcart CGI program could disclose private information.
CVE-2004-2378 1 Calacode 1 At Mail Webmail System 2026-04-16 N/A
@Mail 3.64 for Windows allows remote attackers to cause a denial of service ("unusable" server) via a large number of POP3 connections to the server.
CVE-1999-0613 2026-04-16 N/A
The rpc.sprayd service is running.
CVE-2001-0595 1 Sun 1 Sunos 2026-04-16 N/A
Buffer overflow in the kcsSUNWIOsolf.so library in Solaris 7 and 8 allows local attackers to execute arbitrary commands via the KCMS_PROFILES environment variable, e.g. as demonstrated using the kcms_configure program.
CVE-2001-1502 1 Mountain Network Systems 1 Webcart 2026-04-16 N/A
webcart.cgi in Mountain Network Systems WebCart 8.4 allows remote attackers to execute arbitrary commands via shell metacharacters in the NEXTPAGE parameter.
CVE-2004-2380 1 Twilight Utilities 1 Twilight Utilities Web Server 2026-04-16 N/A
Directory traversal vulnerability in postfile.exe for Twilight Utilities Web Server 2.0.0.0 allows remote attackers to write arbitrary files via a .. (dot dot) in the attfile parameter.
CVE-1999-0618 2026-04-16 N/A
The rexec service is running.
CVE-2001-0596 2 Netscape, Redhat 2 Communicator, Linux 2026-04-16 N/A
Netscape Communicator before 4.77 allows remote attackers to execute arbitrary Javascript via a GIF image whose comment contains the Javascript.
CVE-2004-2383 1 Microsoft 2 Ie, Internet Explorer 2026-04-16 N/A
Microsoft Internet Explorer 5.0 through 6.0 allows remote attackers to bypass cross-frame scripting restrictions and capture keyboard events from other domains via an HTML document with Javascript that is outside a frameset that includes the target domain, then forcing the frameset to maintain focus. NOTE: the discloser claimed that the vendor does not categorize this as a vulnerability, but it can be used in a spoofing scenario; the discloser provides alternate scenarios. Spoofing scenarios are currently included in CVE.
CVE-2004-2384 1 Nullsoft 1 Winamp 2026-04-16 N/A
NullSoft Winamp 5.02 allows remote attackers to cause a denial of service (crash) by creating a file with a long filename, which causes the victim's player to crash when the file is opened from the command line.
CVE-2004-2386 2 Denis Sbragion, Peter Astrand 2 Sredird, Sercd 2026-04-16 N/A
Format string vulnerability in the LogMsg function in sercd before 2.3.1 and sredird 2.2.1 and earlier allows remote attackers to execute arbitrary code via format string specifiers passed from the HandleCPCCommand function.
CVE-1999-0625 2026-04-16 N/A
The rpc.rquotad service is running.
CVE-2004-2398 1 Netenberg 1 Fantastico De Luxe 2026-04-16 N/A
Netenberg Fantastico De Luxe 2.8 uses database file names that contain the associated usernames, which allows local users to determine valid usernames and conduct brute force attacks by reading the file names from /var/lib/mysql, which is assigned world-readable permissions by cPanel 9.3.0 R5.
CVE-1999-0630 2026-04-16 N/A
The NT Alerter and Messenger services are running.
CVE-2004-2409 1 Samhain Labs 1 Samhain 2026-04-16 N/A
Buffer overflow in the sh_hash_compdata function for Samhain 1.8.9 through 2.0.1, when running in update mode ("-t update"), might allow attackers to execute arbitrary code.
CVE-1999-0638 2026-04-16 N/A
The daytime service is running.
CVE-1999-0639 2026-04-16 N/A
The chargen service is running.
CVE-1999-0640 2026-04-16 N/A
The Gopher service is running.