The goal of this project is to make virtual world a safer and better place without child pornography, major computer crime and RIAA.
Login As
You can log in if you are registered at one of these services:
Security Bulletins
Latest Malware Updates

Infostealer.Posteal

02/26/2015

Downloader.Busadom

02/26/2015

Trojan.Ladocosm

02/26/2015

SONAR.SuspDocRun

02/25/2015

SONAR.SuspHelpRun

02/25/2015
Security News

CVE-1999-0568

rpc.admind in Solaris is not running in a secure mode.

01/01/1999

CVE-1999-0565

A Sendmail alias allows input to be piped to a program.

01/01/1999

CVE-1999-0564

An attacker can force a printer to print arbitrary documents (e.g. if the printer doesn't require a password) or to become disabled.

01/01/1999

CVE-1999-0561

IIS has the #exec function enabled for Server Side Include (SSI) files.

01/01/1999

CVE-1999-0560

A system-critical Windows NT file or directory has inappropriate permissions.

01/01/1999

CVE-1999-0559

A system-critical Unix file or directory has inappropriate permissions.

01/01/1999

CVE-1999-0556

Two or more Unix accounts have the same UID.

01/01/1999

CVE-1999-0555

A Unix account with a name other than "root" has UID 0, i.e. root privileges.

01/01/1999

CVE-1999-0554

NFS exports system-critical data to the world, e.g. / or a password file.

01/01/1999

CVE-1999-0549

Windows NT automatically logs in an administrator upon rebooting.

01/01/1999

CVE-1999-0548

A superfluous NFS server is running, but it is not importing or exporting any file systems.

01/01/1999

CVE-1999-0547

An SSH server allows authentication through the .rhosts file.

01/01/1999

CVE-1999-0539

A trust relationship exists between two Unix hosts.

01/01/1999

CVE-1999-0531

** REJECT **  DO NOT USE THIS CANDIDATE NUMBER.  ConsultIDs: None.  Reason: this candidate is solely about a configuration that does not directly introduce security vulnerabilities, so it is more appropriate to cover under the Common Configuration Enumeration (CCE).  Notes: the former description is: "An SMTP service supports EXPN, VRFY, HELP, ESMTP, and/or EHLO."

01/01/1999

CVE-1999-0530

A system is operating in "promiscuous" mode which allows it to perform packet sniffing.

01/01/1999

CVE-1999-0529

A router or firewall forwards packets that claim to come from IANA reserved or private addresses, e.g. 10.x.x.x, 127.x.x.x, 217.x.x.x, etc.

01/01/1999

CVE-1999-0528

A router or firewall forwards external packets that claim to come from inside the network that the router/firewall is in front of.

01/01/1999

CVE-1999-0527

The permissions for system-critical data in an anonymous FTP account are inappropriate.  For example, the root directory is writeable by world, a real password file is obtainable, or executable commands such as "ls" can be overwritten.

01/01/1999

CVE-1999-0523

ICMP echo (ping) is allowed from arbitrary hosts.

01/01/1999

CVE-1999-0520

A system-critical NETBIOS/SMB share has inappropriate access control.

01/01/1999

Security News 136001 - 136020 of 136746
First | Prev. | 6799 6800 6801 6802 6803 | Next | Last All
Security Advisories Database

Remote Code Execution Vulnerability in Microsoft OpenType Font Driver

A remote attacker can execute arbitrary code on the target system.

07/21/2015

SQL Injection Vulnerability in Piwigo

SQL inection vulnerability has been discovered in Piwigo.

02/05/2015

Cross-site Scripting Vulnerability in DotNetNuke

A cross-site scripting (XSS) vulnerability has been discovered in DotNetNuke.

02/05/2015

Cross-site Scripting Vulnerability in Hitachi Command Suite

A cross-site scripting vulnerability was found in Hitachi Command Suite.

02/02/2015

Denial of service vulnerability in FreeBSD SCTP RE_CONFIG Chunk Handling

An attacker can perform a denial of service attack.

01/30/2015

Denial of service vulnerability in Apache Traffic Server HTTP TRACE Max-Forwards

An attacker can perform a denial of service attack.

01/30/2015

Denial of service vulnerability in MalwareBytes Anti-Exploit "mbae.sys"

An attacker can perform a denial of service attack.

01/30/2015

Denial of service vulnerability in Linux Kernel splice

An attacker can perform a denial of service attack.

01/29/2015

Denial of service vulnerability in Python Pillow Module PNG Text Chunks Decompression

An attacker can perform a denial of service attack.

01/20/2015