Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2006-05-16 CVE-2006-2409 USE of Externally-Controlled Format String vulnerability in Raydium
Format string vulnerability in the raydium_log function in console.c in Raydium before SVN revision 310 allows local users to execute arbitrary code via format string specifiers in the format parameter, which are not properly handled in a call to raydium_console_line_add.
local
low complexity
raydium CWE-134
4.6
2006-05-16 CVE-2006-2408 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Raydium
Multiple buffer overflows in Raydium before SVN revision 310 allow remote attackers to execute arbitrary code via a large packet when logged via (1) the raydium_log function in log.c or (2) the raydium_console_line_add function in console.c, possibly from a long player name.
network
low complexity
raydium CWE-119
7.5
2006-05-16 CVE-2006-2407 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in multiple products
Stack-based buffer overflow in (1) WeOnlyDo wodSSHServer ActiveX Component 1.2.7 and 1.3.3 DEMO, as used in other products including (2) FreeSSHd 1.0.9 and (3) freeFTPd 1.0.10, allows remote attackers to execute arbitrary code via a long key exchange algorithm string.
network
low complexity
freeftpd freesshd weonlydo CWE-119
7.5
2006-05-16 CVE-2006-2406 Directory Traversal vulnerability in Unclassified NewsBoard
Directory traversal vulnerability in bb_lib/abbc.css.php in Unclassified NewsBoard (UNB) 1.5.3-d and possibly earlier versions, when register_globals is enabled, allows remote attackers to include arbitrary files via ..
network
high complexity
unclassified-newsboard
2.6
2006-05-16 CVE-2006-2405 Local File Include vulnerability in Unclassified NewsBoard ABBC.CSS.PHP
Directory traversal vulnerability in unb_lib/abbc.conf.php in Unclassified NewsBoard (UNB) 1.6.1 patch 1 and earlier, when register_globals is enabled, allows remote attackers to include arbitrary files via ..
6.8
2006-05-16 CVE-2006-2404 Local File Include vulnerability in Radscripts Radlance 7.0
Directory traversal vulnerability in popup.php in RadScripts RadLance Gold 7.0 allows remote attackers to read arbitrary files via a ..
network
low complexity
radscripts
6.4
2006-05-16 CVE-2006-2403 Remote Buffer Overflow vulnerability in FileZilla Client
Buffer overflow in FileZilla before 2.2.23 allows remote attackers to execute arbitrary commands via unknown attack vectors.
network
low complexity
filezilla
7.5
2006-05-16 CVE-2006-2402 Remote Buffer Overflow and Denial of Service vulnerability in Outgun 1.0/1.0.3
Buffer overflow in the changeRegistration function in servernet.cpp for Outgun 1.0.3 bot 2 and earlier allows remote attackers to change the registration information of other players via a long string.
network
low complexity
outgun
5.0
2006-05-16 CVE-2006-2401 Remote Buffer Overflow and Denial of Service vulnerability in Outgun 1.0/1.0.3
The leetnet functions (leetnet/rudp.cpp) in Outgun 1.0.3 bot 2 and earlier allow remote attackers to cause a denial of service (application crash) via packets with incorrect message sizes, which triggers a buffer over-read.
network
low complexity
outgun
7.8
2006-05-16 CVE-2006-2400 Remote Buffer Overflow and Denial of Service vulnerability in Outgun 1.0/1.0.3
The leetnet functions (leetnet/rudp.cpp) in Outgun 1.0.3 bot 2 and earlier allow remote attackers to cause a denial of service (game interruption) via large packets, which cause an exception to be thrown.
network
low complexity
outgun
7.8