search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2003-02-14 2001-01-28 2003-02-14 VU#146704 Hyperseek 2000 hsx.cgi does not adequately filter user input disclosing directory listings and file contents
2003-02-06 2003-02-05 2003-02-13 VU#400577 Microsoft Internet Explorer allows arbitrary local file reading via "showHelp()" function
2003-02-12 2003-01-21 2003-02-12 VU#825177 Apache allows arbitrary code execution via crafted POST request containing MS-DOS device name
2003-02-12 2003-01-21 2003-02-12 VU#979793 Apache vulnerable to DoS via request for MS-DOS device
2003-02-11 2003-02-07 2003-02-11 VU#134025 kernel-utils sets insecure permissions on "uml_net" utility
2003-02-07 2003-02-06 2003-02-07 VU#666073 AbsoluteTelnet vulnerable to buffer overflow via overly long window title
2002-07-25 2002-07-24 2003-02-06 VU#279323 Microsoft SQL Server contains buffer overflows in several Database Consistency Checkers
2002-07-25 2002-07-24 2003-02-06 VU#508387 Microsoft SQL Server contains SQL injection vulnerability in replication stored procedures
2002-07-25 2002-07-10 2003-02-06 VU#682620 Microsoft SQL Server contains buffer overflow in code used to process "BULK INSERT" queries
2002-09-20 2002-09-11 2003-02-06 VU#603945 Slash-based bulletin boards contain a "quick login" feature that may disclose username and password
2003-02-05 2003-01-02 2003-02-06 VU#855635 Sun Solaris lockd(1M) daemon vulnerable to DoS
2002-07-26 2002-07-24 2003-02-05 VU#370308 Microsoft SQL Server 2000 contains denial-of-service vulnerability in SQL Server Resolution Service
2002-07-26 2002-07-24 2003-02-05 VU#399260 Microsoft SQL Server 2000 contains heap buffer overflow in SQL Server Resolution Service
2002-07-25 2002-04-18 2003-02-05 VU#796313 Microsoft SQL Server service account registry key has weak permissions that permit privilege escalation
2002-07-25 2002-06-14 2003-02-05 VU#225555 Microsoft SQL Server contains buffer overflow in pwdencrypt() function

Sponsored by CISA.