Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 307 152

Количество 307 152

nvd логотип

CVE-2001-1265

около 24 лет назад

Directory traversal vulnerability in IBM alphaWorks Java TFTP server 1.21 allows remote attackers to conduct unauthorized operations on arbitrary files via a .. (dot dot) attack.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1264

около 24 лет назад

Vulnerability in mkacct in HP-UX 11.04 running Virtualvault Operating System (VVOS) 4.0 and 4.5 allows attackers to elevate privileges.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2001-1263

около 24 лет назад

telnet95.exe in Pragma InterAccess 4.0 build 5 allows remote attackers to cause a denial of service (crash) via a large number of characters to port 23, possibly due to a buffer overflow.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1262

около 24 лет назад

Avaya Argent Office 2.1 compares a user-provided SNMP community string with the correct string only up to the length of the user-provided string, which allows remote attackers to bypass authentication with a 0 length community string.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1261

около 24 лет назад

Avaya Argent Office 2.1 may allow remote attackers to change hold music by spoofing a legitimate server's response to a TFTP broadcast and providing an alternate HoldMusic file.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1260

около 24 лет назад

Avaya Argent Office uses weak encryption (trivial encoding) for passwords, which allows remote attackers to gain administrator privileges by sniffing and decrypting the sniffing the passwords during a system reboot.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2001-1259

около 24 лет назад

Avaya Argent Office allows remote attackers to cause a denial of service by sending UDP packets to port 53 with no payload.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1258

около 24 лет назад

Horde Internet Messaging Program (IMP) before 2.2.6 allows local users to read IMP configuration files and steal the Horde database password by placing the prefs.lang file containing PHP code on the server.

CVSS2: 3.6
EPSS: Низкий
nvd логотип

CVE-2001-1257

около 24 лет назад

Cross-site scripting vulnerability in Horde Internet Messaging Program (IMP) before 2.2.6 and 1.2.6 allows remote attackers to execute arbitrary Javascript embedded in an email.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1256

около 24 лет назад

kmmodreg in HP-UX 11.11, 11.04 and 11.00 allows local users to create arbitrary world-writeable files via a symlink attack on the (1) /tmp/.kmmodreg_lock and (2) /tmp/kmpath.tmp temporary files.

CVSS2: 1.2
EPSS: Низкий
nvd логотип

CVE-2001-1255

почти 24 года назад

WinMySQLadmin 1.1 stores the MySQL password in plain text in the my.ini file, which allows local users to obtain unathorized access the MySQL database.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-1254

почти 24 года назад

Web Access component for COM2001 Alexis 2.0 and 2.1 in InternetPBX sends username and voice mail passwords in the clear via a Java applet that sends the information to port 8888 of the server, which could allow remote attackers to steal the passwords via sniffing.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1253

почти 24 года назад

Alexis 2.0 and 2.1 in COM2001 InternetPBX stores voicemail passwords in plain text in the com2001.ini file, which could allow local users to make long distance calls as other users.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-1252

почти 24 года назад

Network Associates PGP Keyserver 7.0 allows remote attackers to bypass authentication and access the administrative web interface via URLs that directly access cgi-bin instead of keyserver/cgi-bin for the programs (1) console, (2) cs, (3) multi_config and (4) directory.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2001-1251

около 24 лет назад

SmallHTTP 1.204 through 3.00 beta 8 allows remote attackers to cause a denial of service via multiple long URL requests.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1250

около 24 лет назад

vWebServer 1.2.0 allows remote attackers to cause a denial of service (hang) via a small number of long URL requests, possibly due to a buffer overflow.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1249

около 24 лет назад

vWebServer 1.2.0 allows remote attackers to cause a denial of service via a URL that contains MS-DOS device names.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1248

около 24 лет назад

vWebServer 1.2.0 allows remote attackers to view arbitrary ASP scripts via a request for an ASP script that ends with a URL-encoded space character (%20).

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1247

больше 23 лет назад

PHP 4.0.4pl1 and 4.0.5 in safe mode allows remote attackers to read and write files owned by the web server UID by uploading a PHP script that uses the error_log function to access the files.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2001-1246

около 24 лет назад

PHP 4.0.5 through 4.1.0 in safe mode does not properly cleanse the 5th parameter to the mail() function, which allows local users and possibly remote attackers to execute arbitrary commands via shell metacharacters.

CVSS2: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-1265

Directory traversal vulnerability in IBM alphaWorks Java TFTP server 1.21 allows remote attackers to conduct unauthorized operations on arbitrary files via a .. (dot dot) attack.

CVSS2: 7.5
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1264

Vulnerability in mkacct in HP-UX 11.04 running Virtualvault Operating System (VVOS) 4.0 and 4.5 allows attackers to elevate privileges.

CVSS2: 10
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1263

telnet95.exe in Pragma InterAccess 4.0 build 5 allows remote attackers to cause a denial of service (crash) via a large number of characters to port 23, possibly due to a buffer overflow.

CVSS2: 5
5%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1262

Avaya Argent Office 2.1 compares a user-provided SNMP community string with the correct string only up to the length of the user-provided string, which allows remote attackers to bypass authentication with a 0 length community string.

CVSS2: 7.5
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1261

Avaya Argent Office 2.1 may allow remote attackers to change hold music by spoofing a legitimate server's response to a TFTP broadcast and providing an alternate HoldMusic file.

CVSS2: 5
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1260

Avaya Argent Office uses weak encryption (trivial encoding) for passwords, which allows remote attackers to gain administrator privileges by sniffing and decrypting the sniffing the passwords during a system reboot.

CVSS2: 10
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1259

Avaya Argent Office allows remote attackers to cause a denial of service by sending UDP packets to port 53 with no payload.

CVSS2: 5
3%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1258

Horde Internet Messaging Program (IMP) before 2.2.6 allows local users to read IMP configuration files and steal the Horde database password by placing the prefs.lang file containing PHP code on the server.

CVSS2: 3.6
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1257

Cross-site scripting vulnerability in Horde Internet Messaging Program (IMP) before 2.2.6 and 1.2.6 allows remote attackers to execute arbitrary Javascript embedded in an email.

CVSS2: 7.5
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1256

kmmodreg in HP-UX 11.11, 11.04 and 11.00 allows local users to create arbitrary world-writeable files via a symlink attack on the (1) /tmp/.kmmodreg_lock and (2) /tmp/kmpath.tmp temporary files.

CVSS2: 1.2
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1255

WinMySQLadmin 1.1 stores the MySQL password in plain text in the my.ini file, which allows local users to obtain unathorized access the MySQL database.

CVSS2: 4.6
0%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-1254

Web Access component for COM2001 Alexis 2.0 and 2.1 in InternetPBX sends username and voice mail passwords in the clear via a Java applet that sends the information to port 8888 of the server, which could allow remote attackers to steal the passwords via sniffing.

CVSS2: 7.5
1%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-1253

Alexis 2.0 and 2.1 in COM2001 InternetPBX stores voicemail passwords in plain text in the com2001.ini file, which could allow local users to make long distance calls as other users.

CVSS2: 4.6
0%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-1252

Network Associates PGP Keyserver 7.0 allows remote attackers to bypass authentication and access the administrative web interface via URLs that directly access cgi-bin instead of keyserver/cgi-bin for the programs (1) console, (2) cs, (3) multi_config and (4) directory.

CVSS2: 10
1%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-1251

SmallHTTP 1.204 through 3.00 beta 8 allows remote attackers to cause a denial of service via multiple long URL requests.

CVSS2: 5
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1250

vWebServer 1.2.0 allows remote attackers to cause a denial of service (hang) via a small number of long URL requests, possibly due to a buffer overflow.

CVSS2: 5
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1249

vWebServer 1.2.0 allows remote attackers to cause a denial of service via a URL that contains MS-DOS device names.

CVSS2: 5
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1248

vWebServer 1.2.0 allows remote attackers to view arbitrary ASP scripts via a request for an ASP script that ends with a URL-encoded space character (%20).

CVSS2: 5
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1247

PHP 4.0.4pl1 and 4.0.5 in safe mode allows remote attackers to read and write files owned by the web server UID by uploading a PHP script that uses the error_log function to access the files.

CVSS2: 6.4
1%
Низкий
больше 23 лет назад
nvd логотип
CVE-2001-1246

PHP 4.0.5 through 4.1.0 in safe mode does not properly cleanse the 5th parameter to the mail() function, which allows local users and possibly remote attackers to execute arbitrary commands via shell metacharacters.

CVSS2: 7.5
3%
Низкий
около 24 лет назад

Уязвимостей на страницу