cgiwrap as used on Cobalt RaQ 2.0 and RaQ 3i does not properly identify the user for running certain scripts, which allows a malicious site administrator to view or modify data located at another virtual site on the same system.
cgiwrap as used on Cobalt RaQ 2.0 and RaQ 3i does not properly identify the user for running certain scripts, which allows a malicious site administrator to view or modify data located at another virtual site on the same system.
Alibaba web server allows remote attackers to execute commands via a pipe character in a malformed URL.
By default, Internet Explorer 5.0 and other versions enables the "Navigate sub-frames across different domains" option, which allows frame spoofing.
Netscape Communicator 4.7 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long certificate key.
userOsa in SCO OpenServer allows local users to corrupt files via a symlink attack.
shell-lock in Cactus Software Shell Lock uses weak encryption (trivial encoding) which allows attackers to easily decrypt and obtain the source code.
FreeBSD VFS cache (vfs_cache) allows local users to cause a denial of service by opening a large number of files.
The SSH authentication agent follows symlinks via a UNIX domain socket.
sccw allows local users to read arbitrary files.
FreeBSD, NetBSD, and OpenBSD allow an attacker to cause a denial of service by creating a large number of socket pairs using the socketpair function, setting a large buffer size via setsockopt, then writing large buffers.
FreeBSD 3.2 and possibly other versions allows a local user to cause a denial of service (panic) with a large number accesses of an NFS v3 mounted directory from a large number of processes.
Trn allows local users to overwrite other users' files via symlinks.
The logging facility of the Debian smtp-refuser package allows local users to delete arbitrary files using symbolic links.
Denial of service in BSDi Symmetric Multiprocessing (SMP) when an fstat call is made when the system has a high CPU load.
Buffer overflow in Microsoft Telnet client in Windows 95 and Windows 98 via a malformed Telnet argument.
Denial of service in AIX ptrace system call allows local users to crash the system.
Race condition in the SSL ISAPI filter in IIS and other servers may leak information in plaintext.
OpenBSD, BSDI, and other Unix operating systems allow users to set chflags and fchflags on character and block devices.
Firewall-1 sets a long timeout for connections that begin with ACK or other packets except SYN, allowing an attacker to conduct a denial of service via a large number of connection attempts to unresponsive systems.
Joe's Own Editor (joe) 2.8 sets the world-readable permission on its crash-save file, DEADJOE, which could allow local users to read files that were being edited by other users.