Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 307 024

Количество 307 024

nvd логотип

CVE-2001-1217

больше 23 лет назад

Directory traversal vulnerability in PL/SQL Apache module in Oracle Oracle 9i Application Server allows remote attackers to access sensitive information via a double encoded URL with .. (dot dot) sequences.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1216

больше 23 лет назад

Buffer overflow in PL/SQL Apache module in Oracle 9i Application Server allows remote attackers to execute arbitrary code via a long request for a help page.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1215

больше 23 лет назад

Format string vulnerability in PFinger 0.7.5 through 0.7.7 allows remote attackers to execute arbitrary code via format string specifiers in a .plan file.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1214

больше 23 лет назад

manual.php in Marcus S. Xenakis Unix Manual 1.0 allows remote attackers to execute arbitrary code via a URL that contains shell metacharacters.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1213

больше 23 лет назад

The default configuration of DataWizard FtpXQ 2.0 and 2.1 includes a default username and password, which allows remote attackers to read and write arbitrary files in the root folder.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2001-1212

больше 23 лет назад

Cross-site scripting vulnerability in catgy.cgi for Aktivate 1.03 allows remote attackers to execute arbitrary Javascript via the desc parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1211

больше 23 лет назад

Ipswitch IMail 7.0.4 and earlier allows attackers with administrator privileges to read and modify user alias and mailing list information for other domains hosted by the same server via the (1) aliasadmin or (2) listadm1 CGI programs, which do not properly verify that an administrator is the administrator for the target domain.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1210

больше 23 лет назад

Cisco ubr900 series routers that conform to the Data-over-Cable Service Interface Specifications (DOCSIS) standard must ship without SNMP access restrictions, which can allow remote attackers to read and write information to the MIB using arbitrary community strings.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2001-1209

больше 23 лет назад

Directory traversal vulnerability in zml.cgi allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1208

больше 23 лет назад

Format string vulnerability in DayDream BBS allows remote attackers to execute arbitrary code via format string specifiers in a file containing a ~#RA control code.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1207

больше 23 лет назад

Buffer overflows in DayDream BBS 2.9 through 2.13 allow remote attackers to possibly execute arbitrary code via the control codes (1) ~#MC, (2) ~#TF, or (3) ~#RA.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1206

больше 23 лет назад

Matrix CGI vault Last Lines 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the $error_log variable.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1205

больше 23 лет назад

Directory traversal vulnerability in lastlines.cgi for Last Lines 2.0 allows remote attackers to read arbitrary files via '..' sequences in the $error_log variable.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1204

больше 23 лет назад

Directory traversal vulnerability in phprocketaddin in Total PC Solutions PHP Rocket Add-in for FrontPage 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the page parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1203

больше 23 лет назад

Format string vulnerability in gpm-root in gpm 1.17.8 through 1.17.18 allows local users to gain root privileges.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-1202

больше 23 лет назад

Cross-site scripting vulnerability in DeleGate 7.7.0 and 7.7.1 does not quote scripting commands within a "403 Forbidden" error page, which allows remote attackers to execute arbitrary Javascript on other clients via a URL that generates an error.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1201

больше 23 лет назад

Buffer overflow in wmcube-gdk for WMCube/GDK 0.98 allows local users to execute arbitrary code via long lines in the object description file.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-1200

больше 23 лет назад

Microsoft Windows XP allows local users to bypass a locked screen and run certain programs that are associated with Hot Keys.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-1199

больше 23 лет назад

Cross-site scripting vulnerability in agora.cgi for Agora 3.0a through 4.0g, when debug mode is enabled, allows remote attackers to execute Javascript on other clients via the cart_id parameter.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1198

больше 23 лет назад

RLPDaemon in HP-UX 10.20 and 11.0 allows local users to overwrite arbitrary files and gain privileges by specifying the target file in the -L option.

CVSS2: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-1217

Directory traversal vulnerability in PL/SQL Apache module in Oracle Oracle 9i Application Server allows remote attackers to access sensitive information via a double encoded URL with .. (dot dot) sequences.

CVSS2: 5
7%
Низкий
больше 23 лет назад
nvd логотип
CVE-2001-1216

Buffer overflow in PL/SQL Apache module in Oracle 9i Application Server allows remote attackers to execute arbitrary code via a long request for a help page.

CVSS2: 7.5
5%
Низкий
больше 23 лет назад
nvd логотип
CVE-2001-1215

Format string vulnerability in PFinger 0.7.5 through 0.7.7 allows remote attackers to execute arbitrary code via format string specifiers in a .plan file.

CVSS2: 7.5
2%
Низкий
больше 23 лет назад
nvd логотип
CVE-2001-1214

manual.php in Marcus S. Xenakis Unix Manual 1.0 allows remote attackers to execute arbitrary code via a URL that contains shell metacharacters.

CVSS2: 7.5
4%
Низкий
больше 23 лет назад
nvd логотип
CVE-2001-1213

The default configuration of DataWizard FtpXQ 2.0 and 2.1 includes a default username and password, which allows remote attackers to read and write arbitrary files in the root folder.

CVSS2: 6.4
1%
Низкий
больше 23 лет назад
nvd логотип
CVE-2001-1212

Cross-site scripting vulnerability in catgy.cgi for Aktivate 1.03 allows remote attackers to execute arbitrary Javascript via the desc parameter.

CVSS2: 5
4%
Низкий
больше 23 лет назад
nvd логотип
CVE-2001-1211

Ipswitch IMail 7.0.4 and earlier allows attackers with administrator privileges to read and modify user alias and mailing list information for other domains hosted by the same server via the (1) aliasadmin or (2) listadm1 CGI programs, which do not properly verify that an administrator is the administrator for the target domain.

CVSS2: 7.5
1%
Низкий
больше 23 лет назад
nvd логотип
CVE-2001-1210

Cisco ubr900 series routers that conform to the Data-over-Cable Service Interface Specifications (DOCSIS) standard must ship without SNMP access restrictions, which can allow remote attackers to read and write information to the MIB using arbitrary community strings.

CVSS2: 6.4
1%
Низкий
больше 23 лет назад
nvd логотип
CVE-2001-1209

Directory traversal vulnerability in zml.cgi allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.

CVSS2: 5
5%
Низкий
больше 23 лет назад
nvd логотип
CVE-2001-1208

Format string vulnerability in DayDream BBS allows remote attackers to execute arbitrary code via format string specifiers in a file containing a ~#RA control code.

CVSS2: 7.5
2%
Низкий
больше 23 лет назад
nvd логотип
CVE-2001-1207

Buffer overflows in DayDream BBS 2.9 through 2.13 allow remote attackers to possibly execute arbitrary code via the control codes (1) ~#MC, (2) ~#TF, or (3) ~#RA.

CVSS2: 7.5
9%
Низкий
больше 23 лет назад
nvd логотип
CVE-2001-1206

Matrix CGI vault Last Lines 2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the $error_log variable.

CVSS2: 7.5
1%
Низкий
больше 23 лет назад
nvd логотип
CVE-2001-1205

Directory traversal vulnerability in lastlines.cgi for Last Lines 2.0 allows remote attackers to read arbitrary files via '..' sequences in the $error_log variable.

CVSS2: 5
1%
Низкий
больше 23 лет назад
nvd логотип
CVE-2001-1204

Directory traversal vulnerability in phprocketaddin in Total PC Solutions PHP Rocket Add-in for FrontPage 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the page parameter.

CVSS2: 5
2%
Низкий
больше 23 лет назад
nvd логотип
CVE-2001-1203

Format string vulnerability in gpm-root in gpm 1.17.8 through 1.17.18 allows local users to gain root privileges.

CVSS2: 7.2
0%
Низкий
больше 23 лет назад
nvd логотип
CVE-2001-1202

Cross-site scripting vulnerability in DeleGate 7.7.0 and 7.7.1 does not quote scripting commands within a "403 Forbidden" error page, which allows remote attackers to execute arbitrary Javascript on other clients via a URL that generates an error.

CVSS2: 7.5
3%
Низкий
больше 23 лет назад
nvd логотип
CVE-2001-1201

Buffer overflow in wmcube-gdk for WMCube/GDK 0.98 allows local users to execute arbitrary code via long lines in the object description file.

CVSS2: 7.2
0%
Низкий
больше 23 лет назад
nvd логотип
CVE-2001-1200

Microsoft Windows XP allows local users to bypass a locked screen and run certain programs that are associated with Hot Keys.

CVSS2: 7.2
0%
Низкий
больше 23 лет назад
nvd логотип
CVE-2001-1199

Cross-site scripting vulnerability in agora.cgi for Agora 3.0a through 4.0g, when debug mode is enabled, allows remote attackers to execute Javascript on other clients via the cart_id parameter.

CVSS2: 7.5
5%
Низкий
больше 23 лет назад
nvd логотип
CVE-2001-1198

RLPDaemon in HP-UX 10.20 and 11.0 allows local users to overwrite arbitrary files and gain privileges by specifying the target file in the -L option.

CVSS2: 7.2
0%
Низкий
больше 23 лет назад

Уязвимостей на страницу