Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 306 905

Количество 306 905

nvd логотип

CVE-2001-0371

около 24 лет назад

Race condition in the UFS and EXT2FS file systems in FreeBSD 4.2 and earlier, and possibly other operating systems, makes deleted data available to user processes before it is zeroed out, which allows a local user to access otherwise restricted information.

CVSS2: 6.2
EPSS: Низкий
nvd логотип

CVE-2001-0370

около 24 лет назад

fcheck prior to 2.57.59 calls the file signature checking program insecurely, which can allow a local user to run arbitrary commands via a file name that contains shell metacharacters.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0369

около 24 лет назад

Buffer overflow in lpsched on DGUX version R4.20MU06 and MU02 allows a local attacker to obtain root access via a long command line argument (non-existent printer name).

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0368

около 24 лет назад

Directory traversal vulnerability in BearShare 2.2.2 and earlier allows a remote attacker to read certain files via a URL containing a series of . characters, a variation of the .. (dot dot) attack.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0367

около 24 лет назад

Mirabilis ICQ WebFront Plug-in ICQ2000b Build 3278 allows a remote attacker to create a denial of service via HTTP URL requests containing a large number of % characters.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0366

около 24 лет назад

saposcol in SAP R/3 Web Application Server Demo before 1.5 trusts the PATH environmental variable to find and execute the expand program, which allows local users to obtain root access by modifying the PATH to point to a Trojan horse expand program.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0365

около 24 лет назад

Eudora before 5.1 allows a remote attacker to execute arbitrary code, when the 'Use Microsoft Viewer' and 'allow executables in HTML content' options are enabled, via an HTML email message containing Javascript, with ActiveX controls and malicious code within IMG tags.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0364

около 24 лет назад

SSH Communications Security sshd 2.4 for Windows allows remote attackers to create a denial of service via a large number of simultaneous connections.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0361

около 24 лет назад

Implementations of SSH version 1.5, including (1) OpenSSH up to version 2.3.0, (2) AppGate, and (3) ssh-1 up to version 1.2.31, in certain configurations, allow a remote attacker to decrypt and/or alter traffic via a "Bleichenbacher attack" on PKCS#1 version 1.5.

CVSS2: 4
EPSS: Низкий
nvd логотип

CVE-2001-0360

около 24 лет назад

Directory traversal vulnerability in help.cgi in Ikonboard 2.1.7b and earlier allows a remote attacker to read arbitrary files via a .. (dot dot) attack in the helpon parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0359

около 24 лет назад

Format string vulnerability in Sierra Half-Life build 1573 and earlier allows a remote attacker to execute arbitrary code via the map command.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0358

около 24 лет назад

Buffer overflows in Sierra Half-Life build 1573 and earlier allow remote attackers to execute arbitrary code via (1) a long map command, (2) a long exec command, or (3) long input in a configuration file.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0357

около 24 лет назад

FormMail.pl in FormMail 1.6 and earlier allows a remote attacker to send anonymous email (spam) by modifying the recipient and message parameters.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0355

около 24 лет назад

Novell Groupwise 5.5 (sp1 and sp2) allows a remote user to access arbitrary files via an implementation error in Groupwise system policies.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0354

около 24 лет назад

TheNet CheckBO 1.56 allows remote attackers to cause a denial of service via a flood of characters to the TCP ports which it is listening on.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0353

около 24 лет назад

Buffer overflow in the line printer daemon (in.lpd) for Solaris 8 and earlier allows local and remote attackers to gain root privileges via a "transfer job" routine.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2001-0352

около 24 лет назад

SNMP agents in 3Com AirConnect AP-4111 and Symbol 41X1 Access Point allow remote attackers to obtain the WEP encryption key by reading it from a MIB when the value should be write-only, via (1) dot11WEPDefaultKeyValue in the dot11WEPDefaultKeysTable of the IEEE 802.11b MIB, or (2) ap128bWepKeyValue in the ap128bWEPKeyTable in the Symbol MIB.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0351

около 24 лет назад

Microsoft Windows 2000 telnet service allows a local user to make a certain system call that allows the user to terminate a Telnet session and cause a denial of service.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0350

около 24 лет назад

Microsoft Windows 2000 telnet service creates named pipes with predictable names and does not properly verify them, which allows local users to execute arbitrary commands by creating a named pipe with the predictable name and associating a malicious program with it, the second of two variants of this vulnerability.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0349

около 24 лет назад

Microsoft Windows 2000 telnet service creates named pipes with predictable names and does not properly verify them, which allows local users to execute arbitrary commands by creating a named pipe with the predictable name and associating a malicious program with it, the first of two variants of this vulnerability.

CVSS2: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-0371

Race condition in the UFS and EXT2FS file systems in FreeBSD 4.2 and earlier, and possibly other operating systems, makes deleted data available to user processes before it is zeroed out, which allows a local user to access otherwise restricted information.

CVSS2: 6.2
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0370

fcheck prior to 2.57.59 calls the file signature checking program insecurely, which can allow a local user to run arbitrary commands via a file name that contains shell metacharacters.

CVSS2: 4.6
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0369

Buffer overflow in lpsched on DGUX version R4.20MU06 and MU02 allows a local attacker to obtain root access via a long command line argument (non-existent printer name).

CVSS2: 7.2
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0368

Directory traversal vulnerability in BearShare 2.2.2 and earlier allows a remote attacker to read certain files via a URL containing a series of . characters, a variation of the .. (dot dot) attack.

CVSS2: 5
2%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0367

Mirabilis ICQ WebFront Plug-in ICQ2000b Build 3278 allows a remote attacker to create a denial of service via HTTP URL requests containing a large number of % characters.

CVSS2: 5
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0366

saposcol in SAP R/3 Web Application Server Demo before 1.5 trusts the PATH environmental variable to find and execute the expand program, which allows local users to obtain root access by modifying the PATH to point to a Trojan horse expand program.

CVSS2: 7.2
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0365

Eudora before 5.1 allows a remote attacker to execute arbitrary code, when the 'Use Microsoft Viewer' and 'allow executables in HTML content' options are enabled, via an HTML email message containing Javascript, with ActiveX controls and malicious code within IMG tags.

CVSS2: 7.5
5%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0364

SSH Communications Security sshd 2.4 for Windows allows remote attackers to create a denial of service via a large number of simultaneous connections.

CVSS2: 5
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0361

Implementations of SSH version 1.5, including (1) OpenSSH up to version 2.3.0, (2) AppGate, and (3) ssh-1 up to version 1.2.31, in certain configurations, allow a remote attacker to decrypt and/or alter traffic via a "Bleichenbacher attack" on PKCS#1 version 1.5.

CVSS2: 4
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0360

Directory traversal vulnerability in help.cgi in Ikonboard 2.1.7b and earlier allows a remote attacker to read arbitrary files via a .. (dot dot) attack in the helpon parameter.

CVSS2: 5
3%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0359

Format string vulnerability in Sierra Half-Life build 1573 and earlier allows a remote attacker to execute arbitrary code via the map command.

CVSS2: 7.5
2%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0358

Buffer overflows in Sierra Half-Life build 1573 and earlier allow remote attackers to execute arbitrary code via (1) a long map command, (2) a long exec command, or (3) long input in a configuration file.

CVSS2: 7.5
3%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0357

FormMail.pl in FormMail 1.6 and earlier allows a remote attacker to send anonymous email (spam) by modifying the recipient and message parameters.

CVSS2: 7.5
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0355

Novell Groupwise 5.5 (sp1 and sp2) allows a remote user to access arbitrary files via an implementation error in Groupwise system policies.

CVSS2: 5
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0354

TheNet CheckBO 1.56 allows remote attackers to cause a denial of service via a flood of characters to the TCP ports which it is listening on.

CVSS2: 5
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0353

Buffer overflow in the line printer daemon (in.lpd) for Solaris 8 and earlier allows local and remote attackers to gain root privileges via a "transfer job" routine.

CVSS2: 10
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0352

SNMP agents in 3Com AirConnect AP-4111 and Symbol 41X1 Access Point allow remote attackers to obtain the WEP encryption key by reading it from a MIB when the value should be write-only, via (1) dot11WEPDefaultKeyValue in the dot11WEPDefaultKeysTable of the IEEE 802.11b MIB, or (2) ap128bWepKeyValue in the ap128bWEPKeyTable in the Symbol MIB.

CVSS2: 5
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0351

Microsoft Windows 2000 telnet service allows a local user to make a certain system call that allows the user to terminate a Telnet session and cause a denial of service.

CVSS2: 2.1
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0350

Microsoft Windows 2000 telnet service creates named pipes with predictable names and does not properly verify them, which allows local users to execute arbitrary commands by creating a named pipe with the predictable name and associating a malicious program with it, the second of two variants of this vulnerability.

CVSS2: 4.6
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0349

Microsoft Windows 2000 telnet service creates named pipes with predictable names and does not properly verify them, which allows local users to execute arbitrary commands by creating a named pipe with the predictable name and associating a malicious program with it, the first of two variants of this vulnerability.

CVSS2: 7.2
3%
Низкий
около 24 лет назад

Уязвимостей на страницу