CWE-264
487 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-264page 1 of 10
- CVE-1999-0227MEDIUMCVSS v2 5.0EG 5.01997-06-01
Access violation in LSASS.EXE (LSA/LSARPC) program in Windows NT allows a denial of service.
- CVE-1999-0344HIGHCVSS v2 7.2EG 7.21998-08-01
NT users can gain debug-level access on a system process using the Sechole exploit.
- CVE-1999-0496HIGHCVSS v2 7.2EG 7.21997-01-01
A Windows NT 4.0 user can gain administrative rights by forcing NtOpenProcessToken to succeed regardless of the user's permissions, aka GetAdmin.
- CVE-1999-0728HIGHCVSS v2 7.8EG 7.81999-07-06
A Windows NT user can disable the keyboard or mouse by directly calling the IOCTLs which control them.
- CVE-1999-0777HIGHCVSS v2 7.5EG 7.51999-09-23
IIS FTP servers may allow a remote attacker to read or delete files on the server, even if they have "No Access" permissions.
- CVE-1999-0839HIGHCVSS v2 7.2EG 7.21999-11-29
Windows NT Task Scheduler installed with Internet Explorer 5 allows a user to gain privileges by modifying the job after it has been scheduled.
- CVE-1999-0899HIGHCVSS v2 7.2EG 7.21999-11-04
The Windows NT 4.0 print spooler allows a local user to execute arbitrary commands due to inappropriate permissions that allow the user to specify an alternate print provider.
- CVE-1999-0909HIGHCVSS v2 7.5EG 7.51999-09-20
Multihomed Windows systems allow a remote attacker to bypass IP source routing restrictions via a malformed packet with IP options, aka the "Spoofed Route Pointer" vulnerability.
- CVE-1999-1011HIGHCVSS v2 10.0EG 10.01999-07-19
The Remote Data Service (RDS) DataFactory component of Microsoft Data Access Components (MDAC) in IIS 3.x and 4.x exposes unsafe methods, which allows remote attackers to execute arbitrary commands.
- CVE-1999-1383MEDIUMCVSS v2 4.6EG 4.61996-09-13
(1) bash before 1.14.7, and (2) tcsh 6.05 allow local users to gain privileges via directory names that contain shell metacharacters (` back-tick), which can cause the commands enclosed in the directory name to be executed when the shell e…
- CVE-2000-0219HIGHCVSS v2 7.2EG 7.22000-02-23
Red Hat 6.0 allows local users to gain root access by booting single user and hitting ^C at the password prompt.
- CVE-2000-0844HIGHCVSS v2 10.0EG 10.02000-11-14
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
- CVE-2001-0771HIGHCVSS v2 7.5EG 7.52001-10-18
Spytech SpyAnywhere 1.50 allows remote attackers to gain administrator access via a single character in the "loginpass" field.
- CVE-2001-1009HIGHCVSS v2 10.0EG 10.02001-08-31
Fetchmail (aka fetchmail-ssl) before 5.8.17 allows a remote malicious (1) IMAP server or (2) POP/POP3 server to overwrite arbitrary memory and possibly gain privileges via a negative index number as part of a response to a LIST request.
- CVE-2001-1247MEDIUMCVSS v2 6.4EG 6.42001-12-06
PHP 4.0.4pl1 and 4.0.5 in safe mode allows remote attackers to read and write files owned by the web server UID by uploading a PHP script that uses the error_log function to access the files.
- CVE-2001-1371HIGHCVSS v2 7.5EG 7.52002-02-06
The default configuration of Oracle Application Server 9iAS 1.0.2.2 enables SOAP and allows anonymous users to deploy applications by default via urn:soap-service-manager and urn:soap-provider-manager.
- CVE-2002-0012HIGHCVSS v2 10.0EG 10.02002-02-13
Vulnerabilities in a large number of SNMP implementations allow remote attackers to cause a denial of service or gain privileges via SNMPv1 trap handling, as demonstrated by the PROTOS c06-SNMPv1 test suite. NOTE: It is highly likely that…
- CVE-2002-0013HIGHCVSS v2 10.0EG 10.02002-02-13
Vulnerabilities in the SNMPv1 request handling of a large number of SNMP implementations allow remote attackers to cause a denial of service or gain privileges via (1) GetRequest, (2) GetNextRequest, and (3) SetRequest messages, as demonst…
- CVE-2002-1111MEDIUMCVSS v2 5.0EG 5.02002-10-04
print_all_bug_page.php in Mantis 0.17.3 and earlier does not verify the limit_reporters option, which allows remote attackers to view bug summaries for bugs that would otherwise be restricted.
- CVE-2002-1590HIGHCVSS v2 7.2EG 7.22002-10-29
The Web-Based Enterprise Management (WBEM) packages (1) SUNWwbdoc, (2) SUNWwbcou, (3) SUNWwbdev and (4) SUNWmgapp packages, when installed using Solaris 8 Update 1/01 or later, install files with world or group write permissions, which all…
- CVE-2002-1877HIGHCVSS v2 7.5EG 7.52002-12-31
NETGEAR FM114P allows remote attackers to bypass access restrictions for web sites via a URL that uses the IP address instead of the hostname.
- CVE-2002-1978HIGHCVSS v2 7.5EG 7.52002-12-31
IPFilter 3.1.1 through 3.4.28 allows remote attackers to bypass firewall rules by sending a PASV command string as the argument of another command to an FTP server, which generates a response that contains the string, causing IPFilter to t…
- CVE-2002-2242MEDIUMCVSS v2 6.4EG 6.42002-12-31
The Apple Package Manager in KisMAC 0.02a and earlier modifies file permissions of sensitive files after installation, which could allow attackers to conduct unauthorized activities on those files.
- CVE-2002-2254LOWCVSS v2 2.1EG 2.12002-12-31
The experimental IP packet queuing feature in Netfilter / IPTables in Linux kernel 2.4 up to 2.4.19 and 2.5 up to 2.5.31, when a privileged process exits and network traffic is not being queued, may allow a later process with the same Proc…
- CVE-2002-2261HIGHCVSS v2 7.5EG 7.52002-12-31
Sendmail 8.9.0 through 8.12.6 allows remote attackers to bypass relaying restrictions enforced by the 'check_relay' function by spoofing a blank DNS hostname.
- CVE-2002-2265MEDIUMCVSS v2 6.4EG 6.42002-12-31
Unspecified vulnerability in LDAP Module in System Authentication of Open Source Internet Solutions (OSIS) 5.4 running on Tru64 UNIX 4.0G and 4.0F allows remote attackers to gain access to arbitrary files or gain privileges via unknown att…
- CVE-2002-2270LOWCVSS v2 3.6EG 3.62002-12-31
Unspecified vulnerability in the ied command in HP-UX 10.10, 10.20, and 11.0 allows local users to view "normally invisible data" via unknown attack vectors.
- CVE-2002-2283LOWCVSS v2 1.9EG 1.92002-12-31
Microsoft Windows XP with Fast User Switching (FUS) enabled does not remove the "show processes from all users" privilege when the user is removed from the administrator group, which allows that user to view processes of other users.
- CVE-2002-2302MEDIUMCVSS v2 6.4EG 6.42002-12-31
3D3.Com ShopFactory 5.5 through 5.8 allows remote attackers to modify the prices in their shopping carts by modifying the price in a hidden form field.
- CVE-2002-2311MEDIUMCVSS v2 6.4EG 6.42002-12-31
Microsoft Internet Explorer 6.0 and possibly others allows remote attackers to upload arbitrary file contents when users press a key corresponding to the JavaScript (1) event.ctrlKey or (2) event.shiftKey onkeydown event contained in a web…
- CVE-2002-2320HIGHCVSS v2 7.8EG 7.82002-12-31
MySimpleNews 1.0 allows remote attackers to delete arbitrary email messages via a direct request to vider.php3.
- CVE-2002-2324HIGHCVSS v2 7.2EG 7.22002-12-31
The "System Restore" directory and subdirectories, and possibly other subdirectories in the "System Volume Information" directory on Windows XP Professional, have insecure access control list (ACL) permissions, which allows local users to …
- CVE-2002-2327MEDIUMCVSS v2 4.9EG 4.92002-12-31
Unspecified vulnerability in the environmental monitoring subsystem in Solaris 8 running on Sun Fire 280R, V480 and V880 allows local users to cause a denial of service by setting volatile properties.
- CVE-2002-2334LOWCVSS v2 3.6EG 3.62002-12-31
Joe text editor 2.8 through 2.9.7 does not remove the group and user setuid bits for backup files, which could allow local users to execute arbitrary setuid and setgid root programs when root edits scripts owned by other users.
- CVE-2002-2344MEDIUMCVSS v2 5.0EG 5.02002-12-31
Ensim WEBppliance 3.0 and 3.1 allows remote attackers to read mail intended for other users by defining an alias that is the target's email address.
- CVE-2002-2353MEDIUMCVSS v2 6.4EG 6.42002-12-31
tftpd32 2.50 and 2.50.2 allows remote attackers to read or write arbitrary files via a full pathname in GET and PUT requests.
- CVE-2002-2356MEDIUMCVSS v2 6.4EG 6.42002-12-31
HAMweather 2.x allows remote attackers to modify administrative settings and obtain sensitive information via a direct request to hwadmin.cgi.
- CVE-2002-2360HIGHCVSS v2 9.3EG 9.32002-12-31
The RPC module in Webmin 0.21 through 0.99, when installed without root or admin privileges, allows remote attackers to read and write to arbitrary files and execute arbitrary commands via remote_foreign_require and remote_foreign_call req…
- CVE-2002-2361MEDIUMCVSS v2 5.8EG 5.82002-12-31
The installer in Yahoo! Messenger 4.0, 5.0 and 5.5 does not verify package signatures which could allow remote attackers to install trojan programs via DNS spoofing.
- CVE-2002-2363HIGHCVSS v2 7.2EG 7.22002-12-31
VJE.VJE-RUN in HP-UX 11.00 adds bin to /etc/PATH, which could allow local users to gain privileges.
- CVE-2002-2394MEDIUMCVSS v2 5.0EG 5.02002-12-31
InterScan VirusWall 3.6 for Linux and 3.52 for Windows allows remote attackers to bypass virus protection and possibly execute arbitrary code via HTTP 1.1 chunked transfer encoding.
- CVE-2002-2395MEDIUMCVSS v2 5.0EG 5.02002-12-31
InterScan VirusWall 3.52 for Windows allows remote attackers to bypass virus protection and possibly execute arbitrary code via HTTP 1.1 gzip content encoding.
- CVE-2002-2401LOWCVSS v2 3.6EG 3.62002-12-31
NT Virtual DOS Machine (NTVDM.EXE) in Windows 2000, NT and XP does not verify user execution permissions for 16-bit executable files, which allows local users to bypass the loader and execute arbitrary programs.
- CVE-2002-2405MEDIUMCVSS v2 4.9EG 4.92002-12-31
Check Point FireWall-1 4.1 and Next Generation (NG), with UserAuth configured to proxy HTTP traffic only, allows remote attackers to pass unauthorized HTTPS, FTP and possibly other traffic through the firewall.
- CVE-2002-2407MEDIUMCVSS v2 6.9EG 6.92002-12-31
Certain patches for QNX Neutrino realtime operating system (RTOS) 6.2.0 set insecure permissions for the files (1) /sbin/io-audio by OS Update Patch A, (2) /bin/shutdown, (3) /sbin/fs-pkg, and (4) phshutdown by QNX experimental patches, (5…
- CVE-2002-2425HIGHCVSS v2 10.0EG 10.02002-12-31
Sun AnswerBook2 1.2 through 1.4.2 allows remote attackers to execute administrative scripts such as (1) AdminViewError and (2) AdminAddadmin via a direct request.
- CVE-2003-0230HIGHCVSS v2 7.2EG 7.22003-08-27
Microsoft SQL Server 7, 2000, and MSDE allows local users to gain privileges by hijacking a named pipe during the authentication of another user, aka the "Named Pipe Hijacking" vulnerability.
- CVE-2003-0497HIGHCVSS v2 7.2EG 7.22003-08-07
Caché Database 5.x installs /cachesys/bin/cache with world-writable permissions, which allows local users to gain privileges by modifying cache and executing it via cuxs.
- CVE-2003-0857MEDIUMCVSS v2 4.6EG 4.62003-12-31
The (1) ipq_read and (2) ipulog_read functions in iptables allow local users to cause a denial of service by sending spoofed messages as other users to the kernel netlink interface.
- CVE-2003-1026HIGHCVSS v2 9.3EG 9.32004-01-20
Internet Explorer 5.01 through 6 SP1 allows remote attackers to bypass zone restrictions via a javascript protocol URL in a sub-frame, which is added to the history list and executed in the top window's zone when the history.back (back) fu…
Map vulnerabilities like CWE-264 to your infrastructure
EchelonGraph correlates every CVE — across CWE-264 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →