Vulnerabilities > MIT > High

DATE CVE VULNERABILITY TITLE RISK
2003-02-19 CVE-2003-0060 Remote Format String vulnerability in MIT Kerberos Key Distribution Center
Format string vulnerabilities in the logging routines for MIT Kerberos V5 Key Distribution Center (KDC) before 1.2.5 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in Kerberos principal names.
network
low complexity
mit
7.5
2003-02-19 CVE-2003-0059 Unspecified vulnerability in MIT Kerberos 5 1.2.1/1.2.2
Unknown vulnerability in the chk_trans.c of the libkrb5 library for MIT Kerberos V5 before 1.2.5 allows users from one realm to impersonate users in other realms that have the same inter-realm keys.
network
low complexity
mit
7.5
2002-12-31 CVE-2002-1652 Remote Buffer Overflow vulnerability in MIT Cgiemail 1.6
Buffer overflow in cgicso.c for cgiemail 1.6 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long query parameter.
network
low complexity
mit
7.5
2002-10-04 CVE-2002-0900 Remote Buffer Overflow vulnerability in MIT PGP Public Key Server Search String
Buffer overflow in pks PGP public key web server before 0.9.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long search argument to the lookup capability.
network
low complexity
mit
7.5
2001-05-16 CVE-2001-1323 Classic Buffer Overflow vulnerability in MIT Kerberos 5
Buffer overflow in MIT Kerberos 5 (krb5) 1.2.2 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via base-64 encoded data, which is not properly handled when the radix_encode function processes file glob output from the ftpglob function.
network
low complexity
mit CWE-120
7.5
2000-05-16 CVE-2000-0392 Buffer overflow in ksu in Kerberos 5 allows local users to gain root privileges.
local
low complexity
cygnus mit redhat
7.2
1999-06-11 CVE-1999-0713 The dtlogin program in Compaq Tru64 UNIX allows local users to gain root privileges.
local
low complexity
cde mit transarc digital
7.2
1998-11-05 CVE-1999-1321 Unspecified vulnerability in MIT Kerberos V
Buffer overflow in ssh 1.2.26 client with Kerberos V enabled could allow remote attackers to cause a denial of service or execute arbitrary commands via a long DNS hostname that is not properly handled during TGT ticket passing.
network
low complexity
mit
7.5
1997-04-29 CVE-1999-1296 Unspecified vulnerability in MIT Kerberos 5 1.5.2
Buffer overflow in Kerberos IV compatibility libraries as used in Kerberos V allows local users to gain root privileges via a long line in a kerberos configuration file, which can be specified via the KRB_CONF environmental variable.
local
low complexity
mit
7.2