Vulnerabilities > Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

DATE CVE VULNERABILITY TITLE RISK
2001-08-14 CVE-2001-0554 Classic Buffer Overflow vulnerability in multiple products
Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You There), which is not properly handled by the telrcv function.
network
low complexity
netkit mit sgi freebsd ibm netbsd openbsd sun debian CWE-120
critical
10.0
2001-05-16 CVE-2001-1323 Classic Buffer Overflow vulnerability in MIT Kerberos 5
Buffer overflow in MIT Kerberos 5 (krb5) 1.2.2 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via base-64 encoded data, which is not properly handled when the radix_encode function processes file glob output from the ftpglob function.
network
low complexity
mit CWE-120
7.5
2000-06-09 CVE-2000-0548 Classic Buffer Overflow vulnerability in multiple products
Buffer overflow in Kerberos 4 KDC program allows remote attackers to cause a denial of service via the e_msg variable in the kerb_err_reply function.
5.0
2000-06-09 CVE-2000-0547 Classic Buffer Overflow vulnerability in multiple products
Buffer overflow in Kerberos 4 KDC program allows remote attackers to cause a denial of service via the localrealm variable in the process_v4 function.
5.0
2000-06-09 CVE-2000-0546 Classic Buffer Overflow vulnerability in multiple products
Buffer overflow in Kerberos 4 KDC program allows remote attackers to cause a denial of service via the lastrealm variable in the set_tgtkey function.
5.0
2000-01-27 CVE-2000-1216 Classic Buffer Overflow vulnerability in IBM AIX 4.3.0
Buffer overflow in portmir for AIX 4.3.0 allows local users to corrupt lock files and gain root privileges via the echo_error routine.
local
low complexity
ibm CWE-120
7.2
1999-06-06 CVE-1999-1237 Classic Buffer Overflow vulnerability in Apache Http Server
Multiple buffer overflows in smbvalid/smbval SMB authentication library, as used in Apache::AuthenSmb and possibly other modules, allows remote attackers to execute arbitrary commands via (1) a long username, (2) a long password, and (3) other unspecified methods.
network
low complexity
apache CWE-120
critical
10.0
1998-12-01 CVE-1999-0385 Classic Buffer Overflow vulnerability in Microsoft Exchange Server 5.5
The LDAP bind function in Exchange 5.5 has a buffer overflow that allows a remote attacker to conduct a denial of service or execute commands.
network
low complexity
microsoft CWE-120
critical
10.0
1998-01-01 CVE-1999-0284 Classic Buffer Overflow vulnerability in multiple products
Denial of service to NT mail servers including Ipswitch, Mdaemon, and Exchange through a buffer overflow in the SMTP HELO command.
network
low complexity
ibm microsoft CWE-120
7.5