SEPTEMBER 22, 2026
Live Feed
Vulnerability Register

CVE Database

Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update

16,139 records on file
Page 534 of 538
CVE ID Score Description
1mo ago
2.6

Internet Explorer 5.0 and 5.01 allows remote attackers to bypass the cross frame security policy and read files via the external.NavigateAndFind function.

1mo ago
2.6

Cisco Cache Engine allows a remote attacker to gain access via a null username and password.

1mo ago
2.1

The PPP wvdial.lxdialog script in wvdial 1.4 and earlier creates a .config file with world readable permissions, which allows a local attacker in the dialout group to access login and password information.

1mo ago
2.1

An SSH 1.2.27 server allows a client to use the "none" cipher, even if it is not allowed by the server policy.

1mo ago
2.6

The Disney Go Express Search allows remote attackers to access and modify search information for users by connecting to an HTTP server on the user's system.

1mo ago
2.1

Sendmail allows local users to reinitialize the aliases database via the newaliases command, then cause a denial of service by interrupting Sendmail.

1mo ago
2.1

Error messages generated by gdm with the VerboseAuth setting allows an attacker to identify valid users on a system.

1mo ago
2.1

Internet Anywhere POP3 Mail Server allows local users to cause a denial of service via a malformed RETR command.

1mo ago
3.6

The default permissions for UnixWare /var/mail allow local users to read and modify other users' mail.

1mo ago
2.1

dump in Debian GNU/Linux 2.1 does not properly restore symlinks, which allows a local user to modify the ownership of arbitrary files.

1mo ago
2.1

Insecure directory permissions in RPM distribution for PostgreSQL allows local users to gain privileges by reading a plaintext password file.

1mo ago
3.6

The default permissions for Endymion MailMan allow local users to read email or modify files.

1mo ago
3.6

UnixWare pkg commands such as pkginfo, pkgcat, and pkgparam allow local users to read arbitrary files via the dacread permission.

1mo ago
2.1

Solaris chkperm allows local users to read files owned by bin via the VMSYS environmental variable and a symlink attack.

1mo ago
2.1

Solaris arp allows local users to read files via the -f parameter, which lists lines in the file that do not parse properly.

1mo ago
2.1

FreeBSD gdc program allows local users to modify files via a symlink attack.

1mo ago
2.1

Linux gpm program allows local users to cause a denial of service by flooding the /dev/gpmctl device with STREAM sockets.

1mo ago
2.6

Internet Explorer allows remote attackers to read files by redirecting data to a Javascript applet.

1mo ago
2.1

Denial of service in BIND named via naptr.

1mo ago
3.6

cgiwrap as used on Cobalt RaQ 2.0 and RaQ 3i does not properly identify the user for running certain scripts, which allows a malicious site administrator to view or modify data located at another virtual site on the same system.

1mo ago
3.6

Alibaba web server allows remote attackers to execute commands via a pipe character in a malformed URL.

1mo ago
2.6

By default, Internet Explorer 5.0 and other versions enables the "Navigate sub-frames across different domains" option, which allows frame spoofing.

1mo ago
2.6

Netscape Communicator 4.7 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long certificate key.

1mo ago
2.1

userOsa in SCO OpenServer allows local users to corrupt files via a symlink attack.

1mo ago
2.1

shell-lock in Cactus Software Shell Lock uses weak encryption (trivial encoding) which allows attackers to easily decrypt and obtain the source code.

1mo ago
2.1

FreeBSD VFS cache (vfs_cache) allows local users to cause a denial of service by opening a large number of files.

1mo ago
2.1

The SSH authentication agent follows symlinks via a UNIX domain socket.

1mo ago
2.1

sccw allows local users to read arbitrary files.

1mo ago
2.1

FreeBSD, NetBSD, and OpenBSD allow an attacker to cause a denial of service by creating a large number of socket pairs using the socketpair function, setting a large buffer size via setsockopt, then writing large buffers.

1mo ago
2.1

FreeBSD 3.2 and possibly other versions allows a local user to cause a denial of service (panic) with a large number accesses of an NFS v3 mounted directory from a large number of processes.