search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2006-01-31 2006-01-29 2006-02-23 VU#604745 Winamp fails to properly handle playlists with long "file" parameter
2002-06-26 2002-06-24 2002-12-06 VU#369347 OpenSSH vulnerabilities in challenge response handling
2007-02-23 2007-02-22 2009-04-13 VU#441785 SupportSoft ActiveX controls contain multiple buffer overflows
2007-06-06 2007-06-04 2007-07-16 VU#138545 Java Runtime Environment Image Parsing Code buffer overflow vulnerability
2005-09-07 2005-09-07 2005-09-09 VU#236045 Cisco IOS Firewall Authentication Proxy vulnerable to buffer overflow via specially crafted user authentication credentials
2008-01-25 2008-01-24 2008-12-18 VU#339345 GE Fanuc Proficy Information Portal allows arbitrary file upload and execution
2007-05-08 2007-05-08 2007-05-09 VU#343145 Microsoft Exchange Server fails to properly decode MIME email messages
2008-06-11 2008-06-11 2008-10-08 VU#476345 Citect CitectSCADA ODBC service buffer overflow
2002-07-31 2002-04-01 2002-07-31 VU#158323 Oracle Configurator discloses version and host information via "test" argument passed to servlet
2003-03-03 2003-03-03 2003-05-20 VU#916785 Buffer overflow in Snort RPC preprocessor
2002-09-20 2002-09-11 2003-02-06 VU#603945 Slash-based bulletin boards contain a "quick login" feature that may disclose username and password
2004-08-27 2004-03-19 2004-08-27 VU#785945 isakmpd crashes when handling ISAKMP packets with malformed "Security Association Payload"
2003-06-05 2003-05-27 2003-06-05 VU#799060 Various Axis products allow unauthorized remote privileged access
2002-10-28 2002-04-15 2002-10-28 VU#582923 webalizer vulnerable to buffer overflow when performing reverse DNS lookups
2001-12-20 2001-10-10 2001-12-21 VU#140723 Advanced Poll does not adequately authenticate users

Sponsored by CISA.