Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
canonical vulnerabilities and exploits
(subscribe to this query)
890
VMScore
CVE-2008-2663
Multiple integer overflows in the rb_ary_store function in Ruby 1.8.4 and previous versions, 1.8.5 prior to 1.8.5-p231, 1.8.6 prior to 1.8.6-p230, and 1.8.7 prior to 1.8.7-p22 allow context-dependent malicious users to execute arbitrary code or cause a denial of service via unkno...
Ruby-lang Ruby
Debian Debian Linux 4.0
Canonical Ubuntu Linux 7.10
Canonical Ubuntu Linux 7.04
Canonical Ubuntu Linux 6.06
Canonical Ubuntu Linux 8.04
890
VMScore
CVE-2008-0599
The init_request_info function in sapi/cgi/cgi_main.c in PHP prior to 5.2.6 does not properly consider operator precedence when calculating the length of PATH_TRANSLATED, which might allow remote malicious users to execute arbitrary code via a crafted URI.
Php Php
Fedoraproject Fedora 9
Fedoraproject Fedora 8
Canonical Ubuntu Linux 7.04
Canonical Ubuntu Linux 7.10
Canonical Ubuntu Linux 8.04
Canonical Ubuntu Linux 6.06
Apple Mac Os X Server
Apple Mac Os X
890
VMScore
CVE-2007-0061
The DHCP server in EMC VMware Workstation prior to 5.5.5 Build 56455 and 6.x prior to 6.0.1 Build 55017, Player prior to 1.0.5 Build 56455 and Player 2 prior to 2.0.1 Build 55017, ACE prior to 1.0.3 Build 54075 and ACE 2 prior to 2.0.1 Build 55017, and Server prior to 1.0.4 Build...
Vmware Ace
Vmware Esx 2.0.2
Vmware Esx 2.5.3
Vmware Player
Vmware Server
Vmware Workstation
Vmware Esx 2.5.4
Vmware Esx 3.0.0
Vmware Esx 3.0.1
Vmware Esx 2.1.3
Canonical Ubuntu Linux 6.06
Canonical Ubuntu Linux 6.10
Canonical Ubuntu Linux 7.04
890
VMScore
CVE-2007-0063
Integer underflow in the DHCP server in EMC VMware Workstation prior to 5.5.5 Build 56455 and 6.x prior to 6.0.1 Build 55017, Player prior to 1.0.5 Build 56455 and Player 2 prior to 2.0.1 Build 55017, ACE prior to 1.0.3 Build 54075 and ACE 2 prior to 2.0.1 Build 55017, and Server...
Vmware Player
Vmware Workstation
Vmware Esx 3.0.1
Vmware Esx 2.0.2
Vmware Esx 2.1.3
Vmware Esx 2.5.3
Vmware Esx 2.5.4
Vmware Ace
Vmware Server
Vmware Esx 3.0.0
Canonical Ubuntu Linux 6.10
Canonical Ubuntu Linux 6.06
Canonical Ubuntu Linux 7.04
890
VMScore
CVE-2007-2442
The gssrpc__svcauth_gssapi function in the RPC library in MIT Kerberos 5 (krb5) 1.6.1 and previous versions might allow remote malicious users to execute arbitrary code via a zero-length RPC credential, which causes kadmind to free an uninitialized pointer during cleanup.
Mit Kerberos 5
Debian Debian Linux 3.1
Debian Debian Linux 4.0
Canonical Ubuntu Linux 7.04
Canonical Ubuntu Linux 6.10
Canonical Ubuntu Linux 6.06
890
VMScore
CVE-2007-0956
The telnet daemon (telnetd) in MIT krb5 prior to 1.6.1 allows remote malicious users to bypass authentication and gain system access via a username beginning with a '-' character, a similar issue to CVE-2007-0882.
Mit Kerberos 5
Debian Debian Linux 3.1
Debian Debian Linux 4.0
Canonical Ubuntu Linux 5.10
Canonical Ubuntu Linux 6.06
Canonical Ubuntu Linux 6.10
890
VMScore
CVE-2005-2700
ssl_engine_kernel.c in mod_ssl prior to 2.8.24, when using "SSLVerifyClient optional" in the global virtual host configuration, does not properly enforce "SSLVerifyClient require" in a per-location context, which allows remote malicious users to bypass intende...
Apache Http Server
Debian Debian Linux 3.1
Debian Debian Linux 3.0
Canonical Ubuntu Linux 4.10
Canonical Ubuntu Linux 5.04
890
VMScore
CVE-2004-1063
PHP 4.x to 4.3.9, and PHP 5.x to 5.0.2, when running in safe mode on a multithreaded Unix webserver, allows local users to bypass safe_mode_exec_dir restrictions and execute commands outside of the intended safe_mode_exec_dir via shell metacharacters in the current directory name...
Php Php
Canonical Ubuntu Linux 4.10
890
VMScore
CVE-2004-1064
The safe mode checks in PHP 4.x to 4.3.9 and PHP 5.x to 5.0.2 truncate the file path before passing the data to the realpath function, which could allow malicious users to bypass safe mode. NOTE: this issue was originally REJECTed by its CNA before publication, but that decision ...
Php Php
Canonical Ubuntu Linux 4.10
890
VMScore
CVE-2004-0444
Multiple vulnerabilities in SYMDNS.SYS for Symantec Norton Internet Security and Professional 2002 through 2004, Norton Personal Firewall 2002 through 2004, Norton AntiSpam 2004, Client Firewall 5.01 and 5.1.1, and Client Security 1.0 up to and including 2.0 allow remote maliciou...
Symantec Client Security 1.3
Symantec Client Security 1.4
Symantec Client Security 1.5
Symantec Norton Internet Security 2002
Symantec Norton Personal Firewall 2004
Symantec Client Firewall 5.1.1
Symantec Client Security 1.0
Symantec Client Security 1.8
Symantec Client Security 1.9
Symantec Norton Internet Security 2004
Symantec Client Security 1.1
Symantec Client Security 1.2
Symantec Client Security 2.0
Symantec Norton Antispam 2004
Symantec Norton Personal Firewall 2002
Symantec Norton Personal Firewall 2003
Symantec Client Firewall 5.01
Symantec Client Security 1.6
Symantec Client Security 1.7
Symantec Norton Internet Security 2003
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4644
unprivileged
CVE-2024-3494
CVE-2024-22460
CVE-2024-26026
CVE-2024-23473
firewall
CVE-2024-28889
XML external entity
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »