Search: "digital"

1129 CVEs found

chroot in Digital Ultrix 4.1 and 4.0 is insecurely installed, which allows local users to gain privileges.

Published: 1991-05-01
Products: 2
Vendors:
digital

dxchpwd in Digital Unix (OSF/1) 3.x allows local users to modify arbitrary files via a symlink attack on the dxchpwd.log file.

Published: 1996-11-17
Products: 1
Vendors:
digital

xterm in Digital UNIX 4.0B *with* patch kit 5 allows local users to overwrite arbitrary files via a symlink attack on a core dump file, which is created when xterm is called with a DISPLAY environment...

Published: 1997-11-12
Products: 1
Vendors:
digital
CVE-1999-1044
4.6 MEDIUM

Vulnerability in Advanced File System Utility (advfs) in Digital UNIX 4.0 through 4.0d allows local users to gain privileges.

Published: 1998-05-07
Products: 2
Vendors:
digital

Vulnerability in loginout in Digital OpenVMS 7.1 and earlier allows unauthorized access when external authentication is enabled.

Published: 1998-07-16
Products: 2
Vendors:
digital

Buffer overflow in at program in Digital UNIX 4.0 allows local users to gain root privileges via a long command line argument.

Published: 1999-01-25
Products: 6
Vendors:
digital

Digital Unix 4.0 has a buffer overflow in the inc program of the mh package.

Published: 1999-02-01
Products: 6
Vendors:
digital

Digital Unix Networker program nsralist has a buffer overflow which allows local users to obtain root privilege.

Published: 1999-02-19
Products: 1
Vendors:
digital
CVE-2000-0845
6.4 MEDIUM

kdebug daemon (kdebugd) in Digital Unix 4.0F allows remote attackers to read arbitrary files by specifying the full file name in the initialization packet.

Published: 2000-11-14
Products: 1
Vendors:
digital
CVE-2001-0338
5.1 MEDIUM

Internet Explorer 5.5 and earlier does not properly validate digital certificates when Certificate Revocation List (CRL) checking is enabled, which could allow remote attackers to spoof trusted web si...

Published: 2001-06-27
Products: 2
Vendors:
microsoft
CVE-2001-0567
4.6 MEDIUM

Digital Creations Zope 2.3.2 and earlier allows a local attacker to gain additional privileges via the changing of ZClass permission mappings for objects and methods in the ZClass.

Published: 2001-08-14
Products: 2
Vendors:
zope

Digital Creations Zope 2.3.1 b1 and earlier allows a local attacker (Zope user) with through-the-web scripting capabilities to alter ZClasses class attributes.

Published: 2001-08-22
Products: 1
Vendors:
zope

Digital Creations Zope 2.3.1 b1 and earlier contains a problem in the method return values related to the classes (1) ObjectManager, (2) PropertyManager, and (3) PropertySheet.

Published: 2001-08-22
Products: 1
Vendors:
zope

msgchk in Digital UNIX 4.0G and earlier allows a local user to read the first line of arbitrary files via a symlink attack on the .mh_profile file.

Published: 2001-09-10
Products: 4
Vendors:
compaq

Buffer overflow in msgchk in Digital UNIX 4.0G and earlier allows local users to execute arbitrary code via a long command line argument.

Published: 2001-09-10
Products: 4
Vendors:
compaq

Guardian Digital WebTool in EnGarde Secure Linux 1.0.1 allows restarted services to inherit some environmental variables, which could allow local users to gain root privileges.

Published: 2001-10-18
Products: 1
Vendors:
engardelinux

Linear key exchange process in High-bandwidth Digital Content Protection (HDCP) System allows remote attackers to access data as plaintext, avoid device blacklists, clone devices, and create new devic...

Published: 2001-11-20
Products: 1
Vendors:
intel

Xircom REX 6000 allows local users to obtain the 10 digit PIN by starting a serial monitor, connecting to the personal digital assistant (PDA) via Rextools, and capturing the cleartext PIN.

Published: 2001-12-31
Products: 2
Vendors:
intel
CVE-2002-0699
5.0 MEDIUM

Unknown vulnerability in the Certificate Enrollment ActiveX Control in Microsoft Windows 98, Windows 98 Second Edition, Windows Millennium, Windows NT 4.0, Windows 2000, and Windows XP allow remote at...

Published: 2002-10-04
Products: 6
Vendors:
microsoft

Buffer overflow in the S/MIME Parsing capability in Microsoft Outlook Express 5.5 and 6.0 allows remote attackers to execute arbitrary code via a digitally signed email with a long "From" address, whi...

Published: 2002-10-28
Products: 2
Vendors:
microsoft