search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2007-05-14 2007-05-14 2009-04-22 VU#739224 HTTP content scanning systems full-width/half-width Unicode encoding bypass
2000-09-26 2000-03-01 2004-04-12 VU#25249 HHControl Object (showHelp) may execute shortcuts embedded in help files
2007-01-09 2007-01-09 2007-01-26 VU#271860 Microsoft Outlook fails to properly parse Office Saved Searches (.oss) files
2007-03-13 2007-01-28 2007-03-13 VU#363112 Apple CrashDump privilege escalation
2005-08-17 2005-08-15 2005-08-17 VU#461412 Apple Mac OS X Server servermgrd authentication vulnerable to buffer overflow
2007-10-19 2007-10-19 2007-10-19 VU#559977 Mozilla products vulnerable to memory corruption in the browser engine
2004-04-07 2004-04-07 2004-04-23 VU#659228 Cisco WLSE and HSE devices contain hardcoded username and password
2005-02-08 2005-02-08 2005-02-08 VU#927889 Microsoft OLE buffer overflow
2011-12-07 2011-12-07 2011-12-09 VU#713012 CA Siteminder login.fcc form xss vulnerability
2005-03-29 2005-03-28 2005-12-22 VU#291924 Multiple Telnet clients fail to properly handle the "LINEMODE" SLC suboption
2001-05-10 2000-11-19 2001-06-19 VU#197477 AT&T WinVNC allows user access to passwords and configuration via weak registry permissions
2006-01-11 2006-01-10 2006-01-31 VU#913449 Apple QuickTime fails to properly handle corrupt GIF images
2004-10-13 2004-10-12 2005-01-24 VU#640488 Microsoft Windows contains an unchecked buffer in the NetDDE services
2006-04-11 2006-04-11 2006-04-11 VU#503124 Microsoft Internet Explorer fails to handle specially crafted, invalid HTML
2005-10-05 2005-09-23 2005-12-16 VU#160012 Ruby safe-level security model bypass

Sponsored by CISA.