Skip to main content

CWE archive

CWE-125 CVEs

Programmatic archive

9,084 CVEs tagged with CWE-125670 Critical, 3,766 High, 4,140 Medium, 503 Low, 5 Unrated.

CVE-2006-6016

Published Nov 21, 2006

wp-admin/user-edit.php in WordPress before 2.0.5 allows remote authenticated users to read the metadata of an arbitrary user via a modified user_id parameter.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-5393

Published Oct 18, 2006

Cisco Secure Desktop (CSD) does not require that the ClearPageFileAtShutdown (aka CCE-Winv2.0-407) registry value equals 1, which might allow local users to read certain memory pa…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-1940

Published Dec 31, 2004

sipclient.cpp in KPhone 4.0.1 and earlier allows remote attackers to cause a denial of service (crash) via a STUN response packet with a large attrLen value that causes an out-of-…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0183

Published May 4, 2004

TCPDUMP 3.8.1 and earlier allows remote attackers to cause a denial of service (crash) via ISAKMP packets containing a Delete payload with a large number of SPI's, which causes an…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0184

Published May 4, 2004

Integer underflow in the isakmp_id_print for TCPDUMP 3.8.1 and earlier allows remote attackers to cause a denial of service (crash) via an ISAKMP packet with an Identification pay…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0221

Published May 4, 2004

isakmpd in OpenBSD 3.4 and earlier allows remote attackers to cause a denial of service (crash) via an ISAKMP packet with a delete payload containing a large number of SPIs, which…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 9,076-9,084 of 9,084 CVEsPage 364 of 364