Skip to main content

CWE archive

CWE-400 CVEs

Programmatic archive

3,433 CVEs tagged with CWE-40062 Critical, 1,683 High, 1,549 Medium, 137 Low, 2 Unrated.

CVE-2009-3791

Published Dec 21, 2009

Unspecified vulnerability in Adobe Flash Media Server (FMS) before 3.5.3 allows attackers to cause a denial of service (resource exhaustion) via unknown vectors.

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2009-3270

Published Sep 18, 2009

Microsoft Internet Explorer 7 through 7.0.6000.16711 allows remote attackers to cause a denial of service (unusable browser) by calling the window.print function in a loop, aka a…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-3267

Published Sep 18, 2009

Microsoft Internet Explorer 6 through 6.0.2900.2180, and 7.0.6000.16711, allows remote attackers to cause a denial of service (CPU consumption) via an automatically submitted form…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-2521

Published Sep 4, 2009

Stack consumption vulnerability in the FTP Service in Microsoft Internet Information Services (IIS) 5.0 through 7.0 allows remote authenticated users to cause a denial of service…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-2541

Published Jul 20, 2009

The web browser on the Sony PLAYSTATION 3 (PS3) allows remote attackers to cause a denial of service (memory consumption and console hang) via a large integer value for the length…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2009-1891

Published Jul 10, 2009

The mod_deflate module in Apache httpd 2.2.11 and earlier compresses large files until completion even after the associated network connection is closed, which allows remote attac…

CVSS 7.1 · High

CVE-2009-1890

Published Jul 5, 2009

The stream_reqbody_cl function in mod_proxy_http.c in the mod_proxy module in the Apache HTTP Server before 2.3.3, when a reverse proxy is configured, does not properly handle an…

CVSS 7.1 · High

CVE-2008-4077

Published Sep 15, 2008

The CGI scripts in (1) LedgerSMB (LSMB) before 1.2.15 and (2) SQL-Ledger 2.8.17 and earlier allow remote attackers to cause a denial of service (resource exhaustion) via an HTTP P…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2008-0132

Published Jan 8, 2008

Pragma FortressSSH 5.0 Build 4 Revision 293 and earlier handles long input to sshd.exe by creating an error-message window and waiting for the administrator to click in this windo…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-7229

Published Nov 15, 2007

The skge driver 1.5 in Linux kernel 2.6.15 on Ubuntu does not properly use the spin_lock and spin_unlock functions, which allows remote attackers to cause a denial of service (mac…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2007-4725

Published Sep 5, 2007

Stack consumption vulnerability in AkkyWareHOUSE 7-zip32.dll before 4.42.00.04, as derived from Igor Pavlov 7-Zip before 4.53 beta, allows user-assisted remote attackers to execut…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-2650

Published May 14, 2007

The OLE2 parser in Clam AntiVirus (ClamAV) allows remote attackers to cause a denial of service (resource consumption) via an OLE2 file with (1) a large property size or (2) a loo…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-0086

Published Jan 5, 2007

The Apache HTTP Server, when accessed through a TCP connection with a large window size, allows remote attackers to cause a denial of service (network bandwidth consumption) via a…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2006-5648

Published Dec 14, 2006

Ubuntu Linux 6.10 for the PowerPC (PPC) allows local users to cause a denial of service (resource consumption) by using the (1) sys_get_robust_list and (2) sys_set_robust_list fun…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-5649

Published Dec 14, 2006

Unspecified vulnerability in the "alignment check exception handling" in Ubuntu 5.10, 6.06 LTS, and 6.10 for the PowerPC (PPC) allows local users to cause a denial of service (ker…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-6017

Published Nov 21, 2006

WordPress before 2.0.5 does not properly store a profile containing a string representation of a serialized object, which allows remote authenticated users to cause a denial of se…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-6025

Published Nov 21, 2006

QUALCOMM Eudora WorldMail 4.0 allows remote attackers to cause a denial of service, as demonstrated by a certain module in VulnDisco Pack. NOTE: The provenance of this informatio…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-5708

Published Nov 4, 2006

Multiple unspecified vulnerabilities in MDaemon and WorldClient in Alt-N Technologies MDaemon before 9.50 allow attackers to cause a denial of service (memory consumption) via uns…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-1364

Published Mar 23, 2006

Microsoft w3wp (aka w3wp.exe) does not properly handle when the AspCompat directive is not used when referencing COM components in ASP.NET, which allows remote attackers to cause…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2005-2309

Published Jul 19, 2005

Opera 8.01 allows remote attackers to cause a denial of service (CPU consumption) via a crafted JPEG image, as demonstrated using random.jpg.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-0738

Published May 2, 2005

Stack consumption vulnerability in Microsoft Exchange Server 2003 SP1 allows users to cause a denial of service (hang) by deleting or moving a folder with deeply nested subfolders…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 3,401-3,425 of 3,433 CVEsPage 137 of 138