search menu icon-carat-right cmu-wordmark

CERT Coordination Center

CERT/CC Vulnerability Notes Database


Published Public Updated ID CVSS Title
2002-11-19 2002-10-30 2002-11-19 VU#361065 The default NTFS permissions are not applied to a converted boot partition on Microsoft Windows 2000 and Windows XP systems when CONVERT.EXE is used
2001-11-19 2001-11-19 2002-11-15 VU#279763 RhinoSoft Serv-U remote administration client transmits password in plaintext
2002-06-04 2002-05-27 2002-11-15 VU#997403 Oracle Reports Server Reports Web Cartridge (RWCGI60) vulnerable to buffer overflow via database name parameter
2002-06-04 2002-05-27 2002-11-15 VU#291555 Oracle Web Cache contains buffer overflow vulnerabilities
2002-03-11 2002-01-10 2002-11-15 VU#307835 Oracle9i Application Server OWA_UTIL procedures expose sensitive information
2002-09-03 2002-09-03 2002-11-14 VU#761651 Cisco VPN 3000 series concentrator does not properly handle malformed ISAKMP packets
2002-10-24 2001-04-20 2002-11-07 VU#887393 Microsoft Windows 2000 SNMP service leaks memory when querying printer objects if spooler service is stopped
2002-05-21 2002-05-21 2002-10-30 VU#341187 SSHD allows users to override "AllowedAuthentications" configuration thereby permitting users to provide any type of authentication
2002-10-29 2001-08-24 2002-10-29 VU#837419 Netegrity SiteMinder does not adequately validate user input thereby allowing user to bypass filters via crafted URL
2002-10-28 2002-04-15 2002-10-28 VU#582923 webalizer vulnerable to buffer overflow when performing reverse DNS lookups
2002-10-17 2002-08-27 2002-10-28 VU#899713 Microsoft Word and Excel documents allow local file reading by via embedded fields
2002-06-05 2002-02-21 2002-10-24 VU#887319 Yahoo! Messenger contains buffer overflow in "IMvironment" field
2002-10-18 2002-10-11 2002-10-18 VU#482241 Avaya switches contains multiple undocumented accounts allowing full administrative access to the device
2002-10-17 2002-09-26 2002-10-17 VU#600777 gv contains buffer overflow in sscanf() function
2002-10-01 1999-04-21 2002-10-16 VU#39965 DHTML Edit Control for IE5 allows local files to be uploaded to web server

Sponsored by CISA.