| CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
| A Windows NT administrator account has the default name of Administrator. |
| A network service is running on a nonstandard port. |
| A Windows NT system does not clear the system page file during shutdown, which might allow sensitive information to be recorded. |
| A Windows NT account policy does not forcibly disconnect remote users from the server when their logon hours expire. |
| An incorrect configuration of the WebStore 1.0 shopping cart CGI program "web_store.cgi" could disclose private information. |
| An incorrect configuration of the Webcart CGI program could disclose private information. |
| The ident/identd service is running. |
| A component service related to NIS+ is running. |
| Trend ScanMail allows remote attackers to obtain potentially sensitive information or disable the anti-virus capability via the smency.nsf file. |
| DiamondCS Process Guard Free 2.000 allows local users to disable the process guard protection system by overwriting the current Service Descriptor Table (SDT) in \device\physicalmemory with the original SDT found in ntoskrnl.exe. |
| The OS/2 or POSIX subsystem in NT is enabled. |
| A system is running a version of software that was replaced with a Trojan Horse at one of its distribution points, such as (1) TCP Wrappers 7.6, (2) util-linux 2.9g, (3) wuarchive ftpd (wuftpd) 2.2 and 2.1f, (4) IRC client (ircII) ircII 2.2.9, (5) OpenSSH 3.4p1, or (6) Sendmail 8.12.6. |
| Windows File Protection (WFP) in Windows 2000 and XP does not remove old security catalog .CAT files, which could allow local users to replace new files with vulnerable old files that have valid hash codes. |
| A system-critical program or library does not have the appropriate patch, hotfix, or service pack installed, or is outdated or obsolete. |
| An application-critical Windows NT registry key has an inappropriate value. |
| Telindus 1100 ASDL router running firmware 6.0.x uses weak encryption for UDP session traffic, which allows remote attackers to gain unauthorized access by sniffing and decrypting the administrative password. |
| Buffer overflow in ToxSoft NextFTP client through CWD command. |
| The WebRamp web administration utility has a default password. |
| Buffer overflow in Fujitsu Chocoa IRC client via IRC channel topics. |
| Denial of service in Sendmail 8.8.6 in HPUX. |