| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Denial of service in Windows NT DNS servers through malicious packet which contains a response to a query that wasn't made. |
| Denial of service in Windows NT DNS servers by flooding port 53 with too many characters. |
| The WorkMan program can be used to overwrite any file to get root access. |
| In IIS, remote attackers can obtain source code for ASP files by appending "::$DATA" to the URL. |
| Excite for Web Servers (EWS) allows remote command execution via shell metacharacters. |
| Remote command execution in Microsoft Internet Explorer using .lnk and .url files. |
| Denial of service in IIS using long URLs. |
| The WINS server in Microsoft Windows NT 4.0 before SP4 allows remote attackers to cause a denial of service (process termination) via invalid UDP frames to port 137 (NETBIOS Name Service), as demonstrated via a flood of random packets. |
| Denial of service in telnet from the Windows NT Resource Kit, by opening then immediately closing a connection. |
| In some NT web servers, appending a space at the end of a URL may allow attackers to read source code for active pages. |
| Vulnerability in the Wguest CGI program. |
| The WinGate telnet proxy allows remote attackers to cause a denial of service via a large number of connections to localhost. |
| Denial of service through Winpopup using large user names. |
| AAA authentication on Cisco systems allows attackers to execute commands without authorization. |
| All records in a WINS database can be deleted through SNMP for a denial of service. |
| Solaris sysdef command allows local users to read kernel memory, potentially leading to root privileges. |
| Solaris volrmmount program allows attackers to read any file. |
| Buffer overflow in Vixie Cron library up to version 3.0 allows local users to obtain root access via a long environmental variable. |
| ypbind with -ypset and -ypsetme options activated in Linux Slackware and SunOS allows local and remote attackers to overwrite files via a .. (dot dot) attack. |
| The WinGate proxy is installed without a password, which allows remote attackers to redirect connections without authentication. |