High Severity Vulnerabilities

111.5K CVEs classified as high severity

HIGH
Total CVEs
111.5K
Vulnerabilities
Avg CVSS
7.5
High
Max CVSS
10.0
Highest
Min CVSS
7.2
Lowest

Browse by Severity

High Severity CVEs

Page 4642 of 4645
CVSS:7.5(High)

The DG/UX finger daemon allows remote command execution through shell metacharacters.

CVSS:7.6(High)

The SATAN session key may be disclosed if the user points the web browser to other sites, possibly allowing root access.

CVSS:7.5(High)

The wrap CGI program in IRIX allows remote attackers to view arbitrary directory listings via a .. (dot dot) attack.

CVSS:7.5(High)

The aglimpse CGI program of the Glimpse package allows remote execution of arbitrary commands.

CVSS:7.5(High)

The campas CGI program provided with some NCSA web servers allows an attacker to execute arbitrary commands via encoded carriage return characters in the query string, as demonstrated by reading the p...

CVSS:7.5(High)

The Java Applet Security Manager implementation in Netscape Navigator 2.0 and Java Developer's Kit 1.0 allows an applet to connect to arbitrary hosts.

CVSS:7.2(High)

The suidperl and sperl program do not give up root privileges when changing UIDs back to the original users, allowing root access.

CVSS:7.2(High)

The dip program on many Linux systems allows local users to gain root access via a buffer overflow.

CVSS:7.2(High)

Kodak Color Management System (KCMS) on Solaris allows a local user to write to arbitrary files and gain root access.

CVSS:7.2(High)

admintool in Solaris allows a local user to write to arbitrary files and gain root access.

CVSS:7.2(High)

Buffer overflow and denial of service in Sendmail 8.7.5 and earlier through GECOS field gives root access to local users.

CVSS:7.2(High)

swinstall and swmodify commands in SD-UX package in HP-UX systems allow local users to create or overwrite arbitrary files to gain root access.

CVSS:10.0(Critical)

Vulnerabilities in UMN gopher and gopher+ versions 1.12 and 2.0x allow an intruder to read any files that can be accessed by the gopher daemon.

CVSS:7.2(High)

Sun/Solaris utmp file allows local users to gain root access if it is writable by users other than root.