| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| Some classic Cisco IOS devices have a vulnerability in the PPP CHAP authentication to establish unauthorized PPP connections. |
| Buffer overflow in statd allows root privileges. |
| Delete or create a file via rpc.statd, due to invalid information. |
| Buffer overflow in lpr, as used in BSD-based systems including Linux, allows local users to execute arbitrary code as root via a long -C (classification) command line option. |
| Buffer overflow in Xt library of X Windowing System allows local users to execute commands with root privileges. |
| fsdump command in IRIX allows local users to obtain root access by modifying sensitive files. |
| MIME conversion buffer overflow in sendmail versions 8.8.3 and 8.8.4. |
| Arbitrary file creation and program execution using FLEXlm LicenseManager, from versions 4.0 to 5.0, in IRIX. |
| Extproc in Oracle 9i and 10g does not require authentication to load a library or execute a function, which allows local users to execute arbitrary commands as the Oracle user. |
| pcnfsd (aka rpc.pcnfsd) allows local users to change file permissions, or execute arbitrary commands through arguments in the RPC call. |
| Buffer overflow in PHP cgi program, php.cgi allows shell access. |
| File creation and deletion, and remote execution, in the BSD line printer daemon (lpd). |
| The chpass command in OpenBSD allows a local user to gain root access through file descriptor leakage. |
| Cisco IOS 12.0 and other versions can be crashed by malicious UDP packets to the syslog port. |
| Certain configurations of wu-ftp FTP server 2.4 use a _PATH_EXECPATH setting to a directory with dangerous commands, such as /bin, which allows remote authenticated users to gain root access via the "site exec" command. |
| wu-ftp allows files to be overwritten via the rnfr command. |
| Multiple buffer overflows in how dtmail handles attachments allows a remote attacker to execute commands. |
| getcwd() file descriptor leak in FTP. |
| CGI PHP mylog script allows an attacker to read any file on the target server. |
| Apache httpd cookie buffer overflow for versions 1.1.1 and earlier. |