search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2007-11-27 2007-11-25 2007-11-27 VU#433819 Apple Mail remote command execution vulnerability
2004-12-10 2004-10-18 2005-01-14 VU#968818 Anti-virus software may not properly scan malformed zip archives
2002-07-25 2002-06-14 2003-02-05 VU#225555 Microsoft SQL Server contains buffer overflow in pwdencrypt() function
2010-06-10 2010-06-09 2010-07-13 VU#578319 Microsoft Windows Help and Support Center URI processing vulnerability
2000-11-02 1999-07-21 2000-11-02 VU#22919 SystemWizard Registry Object ActiveX Control lacks authentication
2001-07-27 2001-06-27 2001-07-27 VU#206019 SCO UnixWare uuxqt contains buffer overflow via long string of characters sent as command line argument
2010-09-01 2010-08-17 2010-09-23 VU#204055 Blackboard Transact database credentials disclosure
2006-11-21 2006-09-28 2007-03-28 VU#693992 NaviCOPA Web Server fails to properly handle certain HTTP requests
2002-09-26 2001-12-15 2002-09-26 VU#672419 Unix Manual PHP-Script does not adequately validate user input thereby allowing arbitrary command execution
2001-09-17 2001-05-24 2003-04-14 VU#756019 Beck IPC@Chip TelnetD vulnerable to account lockout via idle telnet connection
2001-09-27 2001-05-24 2001-09-27 VU#461219 Beck GmbH IPC@Chip TelnetD service ships with inadequately protected default account
2002-01-03 2002-01-02 2002-01-16 VU#907819 AOL Instant Messenger client for Windows contains a buffer overflow while parsing TLV 0x2711 packets
2000-10-30 2000-07-16 2000-11-29 VU#34043 rpc.statd vulnerable to remote root compromise via format string stack overwrite
2002-03-07 2002-03-07 2002-04-02 VU#408419 OpenSSH contains a one-off overflow of an array in the channel handling code
2004-03-24 2004-03-22 2004-03-25 VU#119876 Ethereal contains multiple vulnerabilities in the EIGRP protocol dissector

Sponsored by CISA.