Skip to main content

CWE archive

CWE-119 CVEs

Programmatic archive

14,110 CVEs tagged with CWE-1194,379 Critical, 6,245 High, 3,091 Medium, 395 Low, 0 Unrated.

CVE-2002-2368

Published Dec 31, 2002

Multiple buffer overflows in NEC SOCKS5 1.0 r11 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via a long username to (1) the…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2002-2372

Published Dec 31, 2002

The telnet server in Infoprint 21 running controller software before 1.056007 allows remote attackers to cause a denial of service (crash) via a long username, possibly due to a b…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-2381

Published Dec 31, 2002

Multiple buffer overflows in (1) tetrinet_inmessage, (2) speclist_add and (3) config-getthemeinfo of GTetrinet 0.4.3 and earlier allow remote attackers to casue a denial of servic…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2002-2385

Published Dec 31, 2002

Buffer overflow in hotfoon4.exe in Hotfoon 4.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a URL containing a long voice p…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2002-2388

Published Dec 31, 2002

Buffer overflow in INweb POP3 mail server 2.01 allows remote attackers to cause a denial of service (crash) via a long HELO command.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-2396

Published Dec 31, 2002

Buffer overflow in Advanced TFTP (atftp) 0.5 and 0.6, if installed setuid or setgid, may allow local users to execute arbitrary code via a long argument to the -g option.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2002-2400

Published Dec 31, 2002

Buffer overflow in the httpdProcessRequest function in LibHTTPD 1.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTT…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2002-2404

Published Dec 31, 2002

Buffer overflow in IISPop email server 1.161 and 1.181 allows remote attackers to cause a denial of service (crash) via a long request to the POP3 port (TCP port 110).

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-2411

Published Dec 31, 2002

Buffer overflow in badmin.c in BannerWheel 1.0 allows remote attackers to execute arbitrary code via a long rcmd command.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2002-1365

Published Dec 23, 2002

Heap-based buffer overflow in Fetchmail 6.1.3 and earlier does not account for the "@" character when determining buffer lengths for local addresses, which allows remote attackers…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2002-1200

Published Oct 28, 2002

Balabit Syslog-NG 1.4.x before 1.4.15, and 1.5.x before 1.5.20, when using template filenames or output, does not properly track the size of a buffer when constant characters are…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2002-1222

Published Oct 28, 2002

Buffer overflow in the embedded HTTP server for Cisco Catalyst switches running CatOS 5.4 through 7.3 allows remote attackers to cause a denial of service (reset) via a long HTTP…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2002-1174

Published Oct 11, 2002

Buffer overflows in Fetchmail 6.0.0 and earlier allow remote attackers to cause a denial of service (crash) or execute arbitrary code via (1) long headers that are not properly pr…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2002-0649

Published Aug 12, 2002

Multiple buffer overflows in the Resolution Service for Microsoft SQL Server 2000 and Microsoft Desktop Engine 2000 (MSDE) allow remote attackers to cause a denial of service or e…

CVSS 7.5 · High
Buzz score
8.0
OTX pulse activity
Vendor/product tagsBeta · best-effort

CVE-2002-0813

Published Aug 12, 2002

Heap-based buffer overflow in the TFTP server capability in Cisco IOS 11.1, 11.2, and 11.3 allows remote attackers to cause a denial of service (reset) or modify configuration via…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2001-1539

Published Dec 31, 2001

Stack consumption vulnerability in Internet Explorer The JavaScript settimeout function in Internet Explorer allows remote attackers to cause a denial of service (crash) via the J…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2001-1582

Published Dec 31, 2001

Buffer overflow in the LDAP naming services library (libsldap) in Sun Solaris 8 allows local users to execute arbitrary code via a long LDAP_OPTIONS environment variable to a priv…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2001-0819

Published Dec 6, 2001

A buffer overflow in Linux fetchmail before 5.8.6 allows remote attackers to execute arbitrary code via a large 'To:' field in an email header.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2001-0775

Published Oct 18, 2001

Buffer overflow in xloadimage 4.1 (aka xli 1.16 and 1.17) in Linux allows remote attackers to execute arbitrary code via a FACES format image containing a long (1) Firstname or (2…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 14,076-14,100 of 14,110 CVEsPage 564 of 565