Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 306 905

Количество 306 905

nvd логотип

CVE-2001-0391

около 24 лет назад

Xitami 2.5d4 and earlier allows remote attackers to crash the server via an HTTP request to the /aux directory.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0390

около 24 лет назад

IBM Websphere/NetCommerce3 3.1.2 allows remote attackers to cause a denial of service by directly calling the macro.d2w macro with a long string of %0a characters.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0389

около 24 лет назад

IBM Websphere/NetCommerce3 3.1.2 allows remote attackers to determine the real path of the server by directly calling the macro.d2w macro with a NOEXISTINGHTMLBLOCK argument.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0388

около 24 лет назад

time server daemon timed allows remote attackers to cause a denial of service via malformed packets.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2001-0387

около 24 лет назад

Format string vulnerability in hfaxd in HylaFAX before 4.1.b2_2 allows local users to gain privileges via the -q command line argument.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0386

около 24 лет назад

AnalogX SimpleServer:WWW 1.08 allows remote attackers to cause a denial of service via an HTTP request to the /aux directory.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0385

около 24 лет назад

GoAhead webserver 2.1 allows remote attackers to cause a denial of service via an HTTP request to the /aux directory.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0384

около 24 лет назад

ppd in Reliant Sinix allows local users to corrupt arbitrary files via a symlink attack in the /tmp/ppd.trace file.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0383

около 24 лет назад

banners.php in PHP-Nuke 4.4 and earlier allows remote attackers to modify banner ad URLs by directly calling the Change operation, which does not require authentication.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0382

около 24 лет назад

Computer Associates CCC\Harvest 5.0 for Windows NT/2000 uses weak encryption for passwords, which allows a remote attacker to gain privileges on the application.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0381

около 24 лет назад

The OpenPGP PGP standard allows an attacker to determine the private signature key via a cryptanalytic attack in which the attacker alters the encrypted private key file and captures a single message signed with the signature key.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0380

около 24 лет назад

Crosscom/Olicom XLT-F running XL 80 IM Version 5.5 Build Level 2 allows a remote attacker SNMP read and write access via a default, undocumented community string 'ILMI'.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2001-0379

около 24 лет назад

Vulnerability in the newgrp program included with HP9000 servers running HP-UX 11.11 allows a local attacker to obtain higher access rights.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0378

около 24 лет назад

readline prior to 4.1, in OpenBSD 2.8 and earlier, creates history files with insecure permissions, which allows a local attacker to recover potentially sensitive information via readline history files.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0377

около 24 лет назад

Infradig Inframail prior to 3.98a allows a remote attacker to create a denial of service via a malformed POST request which includes a space followed by a large string.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0376

около 24 лет назад

SonicWALL Tele2 and SOHO firewalls with 6.0.0.0 firmware using IPSEC with IKE pre-shared keys do not allow for the use of full 128 byte IKE pre-shared keys, which is the intended design of the IKE pre-shared key, and only support 48 byte keys. This allows a remote attacker to brute force attack the pre-shared keys with significantly less resources than if the full 128 byte IKE pre-shared keys were used.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0375

около 24 лет назад

Cisco PIX Firewall 515 and 520 with 5.1.4 OS running aaa authentication to a TACACS+ server allows remote attackers to cause a denial of service via a large number of authentication requests.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0374

около 24 лет назад

The HTTP server in Compaq web-enabled management software for (1) Foundation Agents, (2) Survey, (3) Power Manager, (4) Availability Agents, (5) Intelligent Cluster Administrator, and (6) Insight Manager can be used as a generic proxy server, which allows remote attackers to bypass access restrictions via the management port, 2301.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0373

около 24 лет назад

The default configuration of the Dr. Watson program in Windows NT and Windows 2000 generates user.dmp crash dump files with world-readable permissions, which could allow a local user to gain access to sensitive information.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0372

около 24 лет назад

Akopia Interchange 4.5.3 through 4.6.3 installs demo stores with a default group account :backup with no password, which allows a remote attacker to gain administrative access via the demo stores (1) barry, (2) basic, or (3) construct.

CVSS2: 10
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-0391

Xitami 2.5d4 and earlier allows remote attackers to crash the server via an HTTP request to the /aux directory.

CVSS2: 5
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0390

IBM Websphere/NetCommerce3 3.1.2 allows remote attackers to cause a denial of service by directly calling the macro.d2w macro with a long string of %0a characters.

CVSS2: 5
7%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0389

IBM Websphere/NetCommerce3 3.1.2 allows remote attackers to determine the real path of the server by directly calling the macro.d2w macro with a NOEXISTINGHTMLBLOCK argument.

CVSS2: 5
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0388

time server daemon timed allows remote attackers to cause a denial of service via malformed packets.

CVSS2: 10
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0387

Format string vulnerability in hfaxd in HylaFAX before 4.1.b2_2 allows local users to gain privileges via the -q command line argument.

CVSS2: 7.2
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0386

AnalogX SimpleServer:WWW 1.08 allows remote attackers to cause a denial of service via an HTTP request to the /aux directory.

CVSS2: 5
5%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0385

GoAhead webserver 2.1 allows remote attackers to cause a denial of service via an HTTP request to the /aux directory.

CVSS2: 5
7%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0384

ppd in Reliant Sinix allows local users to corrupt arbitrary files via a symlink attack in the /tmp/ppd.trace file.

CVSS2: 2.1
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0383

banners.php in PHP-Nuke 4.4 and earlier allows remote attackers to modify banner ad URLs by directly calling the Change operation, which does not require authentication.

CVSS2: 5
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0382

Computer Associates CCC\Harvest 5.0 for Windows NT/2000 uses weak encryption for passwords, which allows a remote attacker to gain privileges on the application.

CVSS2: 7.5
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0381

The OpenPGP PGP standard allows an attacker to determine the private signature key via a cryptanalytic attack in which the attacker alters the encrypted private key file and captures a single message signed with the signature key.

CVSS2: 4.6
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0380

Crosscom/Olicom XLT-F running XL 80 IM Version 5.5 Build Level 2 allows a remote attacker SNMP read and write access via a default, undocumented community string 'ILMI'.

CVSS2: 6.4
3%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0379

Vulnerability in the newgrp program included with HP9000 servers running HP-UX 11.11 allows a local attacker to obtain higher access rights.

CVSS2: 4.6
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0378

readline prior to 4.1, in OpenBSD 2.8 and earlier, creates history files with insecure permissions, which allows a local attacker to recover potentially sensitive information via readline history files.

CVSS2: 2.1
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0377

Infradig Inframail prior to 3.98a allows a remote attacker to create a denial of service via a malformed POST request which includes a space followed by a large string.

CVSS2: 5
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0376

SonicWALL Tele2 and SOHO firewalls with 6.0.0.0 firmware using IPSEC with IKE pre-shared keys do not allow for the use of full 128 byte IKE pre-shared keys, which is the intended design of the IKE pre-shared key, and only support 48 byte keys. This allows a remote attacker to brute force attack the pre-shared keys with significantly less resources than if the full 128 byte IKE pre-shared keys were used.

CVSS2: 7.5
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0375

Cisco PIX Firewall 515 and 520 with 5.1.4 OS running aaa authentication to a TACACS+ server allows remote attackers to cause a denial of service via a large number of authentication requests.

CVSS2: 5
16%
Средний
около 24 лет назад
nvd логотип
CVE-2001-0374

The HTTP server in Compaq web-enabled management software for (1) Foundation Agents, (2) Survey, (3) Power Manager, (4) Availability Agents, (5) Intelligent Cluster Administrator, and (6) Insight Manager can be used as a generic proxy server, which allows remote attackers to bypass access restrictions via the management port, 2301.

CVSS2: 7.5
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0373

The default configuration of the Dr. Watson program in Windows NT and Windows 2000 generates user.dmp crash dump files with world-readable permissions, which could allow a local user to gain access to sensitive information.

CVSS2: 2.1
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0372

Akopia Interchange 4.5.3 through 4.6.3 installs demo stores with a default group account :backup with no password, which allows a remote attacker to gain administrative access via the demo stores (1) barry, (2) basic, or (3) construct.

CVSS2: 10
2%
Низкий
около 24 лет назад

Уязвимостей на страницу