Aggregator
Hewlett Packard Enterprise Data Breach Offered for Sale on Darknet
7 months 4 weeks ago
cohenido
CVE-1999-1568 | Ncftpd FTP Server 2.4.0 PORT Command Long Argument denial of service (XFDB-1833 / SBV-30656)
7 months 4 weeks ago
A vulnerability was found in Ncftpd FTP Server 2.4.0. It has been classified as problematic. This affects an unknown part of the component PORT Command Handler. The manipulation as part of Long Argument leads to denial of service.
This vulnerability is uniquely identified as CVE-1999-1568. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2001-1125 | Symantec LiveUpdate 1.4/1.5 authentication spoofing (XFDB-7235 / SBV-2427)
7 months 4 weeks ago
A vulnerability was found in Symantec LiveUpdate 1.4/1.5 and classified as critical. This issue affects some unknown processing. The manipulation leads to authentication bypass by spoofing.
The identification of this vulnerability is CVE-2001-1125. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2002-0051 | Microsoft Windows 2000 Group Policy File privileges management (MS02-016 / Nessus ID 10945)
7 months 4 weeks ago
A vulnerability has been found in Microsoft Windows 2000 and classified as problematic. This vulnerability affects unknown code of the component Group Policy File Handler. The manipulation leads to improper privilege management.
This vulnerability was named CVE-2002-0051. Attacking locally is a requirement. There is no exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2002-0485 | Symantec Norton Antivirus Attachment Content-type privileges management
7 months 4 weeks ago
A vulnerability classified as critical was found in Symantec Norton Antivirus. Affected by this vulnerability is an unknown functionality of the component Attachment Handler. The manipulation of the argument Content-type leads to improper privilege management.
This vulnerability is known as CVE-2002-0485. The attack can be launched remotely. There is no exploit available.
vuldb.com
CVE-2002-1372 | Easy Software Products CUPS up to 1.1.17 File Descriptor denial of service (Nessus ID 11199 / ID 38160)
7 months 4 weeks ago
A vulnerability was found in Easy Software Products CUPS up to 1.1.17. It has been rated as problematic. Affected by this issue is some unknown functionality of the component File Descriptor Handler. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2002-1372. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2002-1657 | PostgreSQL 7.3.19 Salt Username missing encryption (XFDB-20215)
7 months 4 weeks ago
A vulnerability was found in PostgreSQL 7.3.19. It has been classified as critical. Affected is an unknown function of the component Salt Handler. The manipulation of the argument Username leads to missing encryption of sensitive data.
This vulnerability is traded as CVE-2002-1657. It is possible to launch the attack remotely. There is no exploit available.
vuldb.com
CVE-2004-0458 | Nicolas Boullis mah-jong 1.4/1.6 null pointer dereference (Nessus ID 15340 / XFDB-16143)
7 months 4 weeks ago
A vulnerability was found in Nicolas Boullis mah-jong 1.4/1.6 and classified as problematic. This issue affects some unknown processing. The manipulation leads to null pointer dereference.
The identification of this vulnerability is CVE-2004-0458. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2004-1901 | Portage up to 2.0.50 link following (XFDB-15754 / SBV-22830)
7 months 4 weeks ago
A vulnerability was found in Portage up to 2.0.50. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to link following.
This vulnerability is handled as CVE-2004-1901. Attacking locally is a requirement. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2001-0667 | Microsoft Internet Explorer up to 6 Services for UNIX privileges management (VU#952611 / XFDB-7260)
7 months 4 weeks ago
A vulnerability was found in Microsoft Internet Explorer up to 6. It has been rated as critical. Affected by this issue is some unknown functionality of the component Services for UNIX. The manipulation leads to improper privilege management.
This vulnerability is handled as CVE-2001-0667. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
OSV-SCALIBR: A library for Software Composition Analysis
7 months 4 weeks ago
Kimberly Samra
Everest
7 months 4 weeks ago
cohenido
CVE-2001-0384 | Siemens Reliant Unix 5.43/5.44/5.45 ppd /tmp/ppd.trace symlink (EDB-20769 / BID-2606)
7 months 4 weeks ago
A vulnerability classified as problematic was found in Siemens Reliant Unix 5.43/5.44/5.45. Affected by this vulnerability is an unknown functionality of the file /tmp/ppd.trace of the component ppd. The manipulation leads to symlink following.
This vulnerability is known as CVE-2001-0384. An attack has to be approached locally. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-21335 | Microsoft Windows up to Server 2025 Hyper-V NT Kernel Integration VSP use after free
7 months 4 weeks ago
A vulnerability was found in Microsoft Windows up to Server 2025. It has been declared as critical. This vulnerability affects unknown code of the component Hyper-V NT Kernel Integration VSP. The manipulation leads to use after free.
This vulnerability was named CVE-2025-21335. Attacking locally is a requirement. Furthermore, there is an exploit available.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2024-23282 | Apple watchOS Email improper authorization (Nessus ID 214267)
7 months 4 weeks ago
A vulnerability was found in Apple watchOS. It has been declared as critical. This vulnerability affects unknown code of the component Email Handler. The manipulation leads to improper authorization.
This vulnerability was named CVE-2024-23282. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-23282 | Apple macOS Email improper authorization (Nessus ID 214267)
7 months 4 weeks ago
A vulnerability was found in Apple macOS. It has been classified as critical. This affects an unknown part of the component Email Handler. The manipulation leads to improper authorization.
This vulnerability is uniquely identified as CVE-2024-23282. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-23251 | Apple watchOS Mail Account Credential information disclosure (Nessus ID 214267)
7 months 4 weeks ago
A vulnerability was found in Apple watchOS. It has been classified as problematic. This affects an unknown part of the component Mail Account Credential Handler. The manipulation leads to information disclosure.
This vulnerability is uniquely identified as CVE-2024-23251. It is possible to launch the attack on the physical device. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-23251 | Apple iOS/iPadOS Mail Account Credential information disclosure (Nessus ID 214267)
7 months 4 weeks ago
A vulnerability has been found in Apple iOS and iPadOS and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Mail Account Credential Handler. The manipulation leads to information disclosure.
This vulnerability is known as CVE-2024-23251. It is possible to launch the attack on the physical device. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2024-23251 | Apple macOS Mail Account Credential information disclosure (Nessus ID 214267)
7 months 4 weeks ago
A vulnerability was found in Apple macOS and classified as problematic. Affected by this issue is some unknown functionality of the component Mail Account Credential Handler. The manipulation leads to information disclosure.
This vulnerability is handled as CVE-2024-23251. It is possible to launch the attack on the physical device. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com