search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2001-07-27 2001-07-02 2001-07-30 VU#654643 Allaire JRun Java Application Server vulnerable to Cross-Site Scripting via passing of user input directly to default error page
2008-03-12 2008-03-11 2008-03-13 VU#654577 Microsoft Office Web Components Spreadsheet ActiveX control URL parsing stack buffer overflow
2004-03-15 2003-12-15 2004-03-15 VU#878526 Apple Mac OS X "cd9660.util" buffer overflow
2002-06-05 2002-02-26 2002-06-05 VU#755755 Yahoo! Messenger contains a buffer overflow in "set_buddygrp" when adding users to a buddy list via the web
2006-04-28 2006-04-25 2006-05-23 VU#955777 Multiple vulnerabilities in DNS implementations
2004-08-27 2004-03-19 2004-08-27 VU#996177 Multiple memory leak vulnerabilities in isakmpd
2002-12-04 2002-11-25 2002-12-13 VU#140977 SSH Secure Shell for Workstations contains buffer overflow in URL-handling feature
2002-07-25 2002-04-18 2003-02-05 VU#796313 Microsoft SQL Server service account registry key has weak permissions that permit privilege escalation
2007-08-29 2007-08-27 2007-08-30 VU#281977 Quiksoft EasyMail SMTP ActiveX control stack buffer overflow vulnerabilities
2002-09-16 2002-03-28 2002-12-10 VU#152955 IBM AIX FC contains buffer overflow exploitable during session setup
2007-04-26 2007-04-26 2007-04-26 VU#906777 IncrediMail IMMenuShellExt ActiveX control stack buffer overflow vulnerability
2006-03-03 2005-12-22 2006-03-06 VU#351217 Apple Safari WebKit component vulnerable to buffer overflow
2003-06-24 2003-05-28 2003-09-18 VU#757612 Apache Portable Runtime contains heap buffer overflow in apr_psprintf()
2001-04-10 2001-04-10 2001-04-11 VU#490344 Alcatel ADSL modems provide unauthenticated TFTP access via physical WAN interface
2002-09-20 2002-08-01 2002-09-20 VU#137555 HP Tru64 UNIX "chfn" contains buffer overflow (SSRT2259)

Sponsored by CISA.