| OSVDB ID | Disclosure Date | Title |
|
67713
Description:
(Description Provided by CVE) : Winny 2.0b7.1 and earlier does not properly process node information, which has unspecified impact and remote attack vectors that might lead to use of the product's host for DDoS attacks.
|
2010-08-20
|
Winny Node Information Handling Unspecified Remote Issue
|
|
67711
Description:
(Description Provided by CVE) : Multiple buffer overflows in Winny 2.0b7.1 and earlier might allow remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2006-2007.
|
2010-08-20
|
Winny Unspecified Multiple Remote Overflows
|
|
42166
Description:
(Description Provided by CVE) : Multiple array index errors in the bpf_filter_init function in NPF.SYS in WinPcap before 4.0.2, when run in monitor mode (aka Table Management Extensions or TME), and as used in Wireshark and possibly other products, allow local users to gain privileges via crafted IOCTL requests.
|
2007-11-12
|
WinPcap Monitor Mode NPF.SYS bpf_filter_init Function Array Indexing Crafted IOCTL Request Local Privilege Escalation
|
|
37889
Description:
(Description Provided by CVE) : The IOCTL 9031 (BIOCGSTATS) handler in the NPF.SYS device driver in WinPcap before 4.0.1 allows local users to overwrite memory and execute arbitrary code via malformed Interrupt Request Packet (Irp) parameters.
|
2007-07-09
|
WinPcap NPF.SYS IOCTL 9031 (BIOCGSTATS) Handler Local Privilege Escalation
|
|
58263
Description:
(Description Provided by CVE) : Stack-based buffer overflow in Winplot 1.25.0.1 allows user-assisted remote attackers to execute arbitrary code via a crafted Plot2D (.wp2) file.
|
2009-09-21
|
Winplot WP2 File Handling Overflow
|
|
13692
Description:
(Description Provided by CVE) : Buffer overflows in POP3 service in WinProxy 2.0 and 2.0.1 allow remote attackers to execute arbitrary commands via long USER, PASS, LIST, RETR, or DELE commands.
|
2000-06-27
|
WinProxy POP3 Service Multiple Command Remote Overflow
|
|
82488
Description:
WinRadius Server contains a flaw that may allow a remote denial of service. The issue is triggered when the program fails to validate input passed via the password field, and will result in loss of availability for the system when a remote attacker supplies a password with more than 240 characters.
|
2012-05-27
|
WinRadius Password Field Parsing Remote DoS
|
|
22363
Description:
(Description Provided by CVE) : Buffer overflow in the "Add to archive" command in WinRAR 3.51 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code by tricking the user into adding a file whose filename contains a non-default code page and non-ANSI characters, as demonstrated using a Chinese filename, possibly due to buffer expansion when using the WideCharToMultiByte API. NOTE: it is not clear whether this problem can be exploited for code execution. If not, then perhaps the user-assisted nature of the attack should exclude the issue from inclusion in CVE.
|
2005-12-21
|
WinRAR Add to Archive Non-ASCII Character Processing Overflow
|
|
43439
Description:
(Description Provided by CVE) : Multiple unspecified vulnerabilities in RARLAB WinRAR before 3.71 have unknown impact and attack vectors related to crafted (1) ACE, (2) ARJ, (3) BZ2, (4) CAB, (5) GZ, (6) LHA, (7) RAR, (8) TAR, or (9) ZIP files, as demonstrated by the OUSPG PROTOS GENOME test suite for Archive Formats.
|
2008-03-17
|
WinRAR Archive Handling Multiple Unspecified Issues
|
|
20402
Description:
Unknown / Incomplete
|
2005-10-15
|
WinRAR Command Line Archive Name Local Overflow
|
|
18942
Description:
Unknown / Incomplete
|
2004-09-28
|
WinRAR Crafted .rar Header Local Overflow
|
|
12550
Description:
A local overflow exists in WinRar. WinRar fails to properly validate data resulting in a buffer overflow. When a user deletes a specific file from a specially crafted zip file, an attacker can cause the execution of arbitrary code resulting in a loss of integrity.
|
2004-12-22
|
WinRAR Delete Archived File Overflow
|
|
22364
Description:
(Description Provided by CVE) : Buffer overflow in WinRAR 3.50 and earlier allows local users to execute arbitrary code via a long command-line argument. NOTE: because this program executes with the privileges of the invoking user, and because remote programs do not normally have the ability to specify a command-line argument for this program, there may not be a typical attack vector for the issue that crosses privilege boundaries. Therefore this may not be a vulnerability.
|
2006-01-03
|
WinRAR for Windows Archive Filename Overflow
|
|
88590
Description:
WinRAR contains a flaw that allows a remote attacker to potentially overwrite files and execute arbitrary programs on a target system. The issue is due to the module not properly filtering encoded path names when extracting files. This allows an attacker to create a specially crafted .zip file that will extract files to arbitrary locations including the system root directory.
|
2003-05-09
|
WinRAR Invalid Character Double Dot Traversal Arbitrary File Write
|
|
27379
Description:
(Description Provided by CVE) : Stack-based buffer overflow in lzh.fmt in WinRAR 3.00 through 3.60 beta 6 allows remote attackers to execute arbitrary code via a long filename in a LHA archive.
|
2006-07-18
|
WinRAR lzh.fmt LHA Archive Processing Overflow
|
|
27031
Description:
A local overflow exists in WinRAR. WinRAR fails to process archive comment when extracting files resulting in a stack overflow. With a specially crafted file, an attacker can cause an application overflow resulting in a loss of integrity.
|
2006-07-05
|
WinRAR SFX Module Archive Comment Processing Overflow
|
|
19915
Description:
A remote overflow exists in WinRAR. The 'UNACEV2.DLL' library fails to perform proper bounds checking resulting in a buffer overflow. With a specially crafted ACE archive containing a compressed file with an overly long filename, a remote attacker can cause arbitrary code execution resulting in a loss of integrity.
|
2005-10-11
|
WinRAR UNACEV2.DLL ACE Filename Overflow
|
|
11386
Description:
WinRAR contains a flaw that may allow a remote denial of service due to a non-descript error in WinRAR's Repair command. The issue is triggered when repairing a corrupt ZIP archive, and will result in loss of availability for the service.
|
2004-11-02
|
WinRAR Unspecified Repair Archive Feature Issue
|
|
15983
Description:
(Description Provided by CVE) : Directory traversal vulnerability in WinRAR 3.42 and earlier, when the user clicks on the ZIP file to extract it, allows remote attackers to create arbitrary files via a ... (triple dot) in the filename of the ZIP file.
|
2005-02-02
|
WinRAR Zip File Traversal Arbitrary File Creation
|
|
62610
Description:
Unknown / Incomplete
|
2009-09-28
|
WinRAR ZIP Filename Spoofing Weakness
|
|
47057
Description:
WinRemotePC 2008 contains a flaw that may allow a remote attacker to cause a denial of service. The issue is triggered when the attacker sends a flood of overly large or malformed packets, causing the program to exhaust available CPU and memory resources.
|
2008-07-15
|
WinRemotePC WRPCServer.exe Resource Consumption Remote DoS
|
|
70285
Description:
WinRoute Firewall contains a flaw related to an unspecified error when processing HTTP data sent to a 'non-HTTP' TCP connection. The issue is triggered when a context-dependent attacker stores arbitrary data in the HTTP cache, which will be served in place of legitimate content.
|
2010-12-20
|
WinRoute Firewall HTTP Cache Poisoning
|
|
7688
Description:
(Description Provided by CVE) : SSH2 clients for VanDyke (1) SecureCRT 4.0.2 and 3.4.7, (2) SecureFX 2.1.2 and 2.0.4, and (3) Entunnel 1.0.2 and earlier, do not clear logon credentials from memory, including plaintext passwords, which could allow attackers with access to memory to steal the SSH credentials.
|
2003-01-28
|
WinSCP Client Memory Logon Credential Leak
|
|
5381
Description:
Unknown / Incomplete
|
2004-04-15
|
WinSCP Long URL DoS
|
|
40519
Description:
(Description Provided by CVE) : Interpretation conflict in WinSCP before 4.0.4 allows remote attackers to perform arbitrary file transfers with a remote server via file-transfer commands in the final portion of a (1) scp, and possibly a (2) sftp or (3) ftp, URL, as demonstrated by a URL specifying login to the remote server with a username of scp, which is interpreted as an HTTP scheme name by the protocol handler in a web browser, but is interpreted as a username by WinSCP. NOTE: this is related to an incomplete fix for CVE-2006-3015.
|
2007-09-13
|
WinSCP Protocol Handler Command Line Switch Injection Arbitrary File Transfer
|
|
26338
Description:
(Description Provided by CVE) : Argument injection vulnerability in WinSCP 3.8.1 build 328 allows remote attackers to upload or download arbitrary files via encoded spaces and double-quote characters in a scp or sftp URI.
|
2006-06-10
|
WinSCP scp/sftp Protocol Handler Arbitrary Command Injection
|
|
2614
Description:
Unknown / Incomplete
|
2003-09-30
|
winShadow Server username / password Handling Remote Overflow DoS
|
|
58950
Description:
Unknown / Incomplete
|
2003-09-30
|
winShadow Session File (.osh) hostname Parameter Handling Local Overflow
|
|
13206
Description:
(Description Provided by CVE) : Buffer overflow in WinSMTP 1.06f and 2.X allows remote attackers to cause a denial of service via a long (1) USER or (2) HELO command.
|
2000-09-11
|
WinSMTP Multiple Command Remote Overflow
|
|
1665
Description:
(Description Provided by CVE) : Directory traversal vulnerability in Winsock FTPd (WFTPD) 3.00 and 2.41 with the "Restrict to home directory" option enabled allows local users to escape the home directory via a "/../" string, a variation of the .. (dot dot) attack.
|
2000-11-27
|
Winsock FTPd Directory Traversal
|