Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 306 740

Количество 306 740

nvd логотип

CVE-2001-0161

больше 24 лет назад

Cisco 340-series Aironet access point using firmware 11.01 does not use 6 of the 24 available IV bits for WEP encryption, which makes it easier for remote attackers to mount brute force attacks.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0160

больше 24 лет назад

Lucent/ORiNOCO WaveLAN cards generate predictable Initialization Vector (IV) values for the Wireless Encryption Protocol (WEP) which allows remote attackers to quickly compile information that will let them decrypt messages.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0157

около 24 лет назад

Debugging utility in the backdoor mode of Palm OS 3.5.2 and earlier allows attackers with physical access to a Palm device to bypass access restrictions and obtain passwords, even if the system lockout mechanism is enabled.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0156

около 24 лет назад

VShell SSH gateway 1.0.1 and earlier has a default port forwarding rule of 0.0.0.0/0.0.0.0, which could allow local users to conduct arbitrary port forwarding to other systems.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0155

около 24 лет назад

Format string vulnerability in VShell SSH gateway 1.0.1 and earlier allows remote attackers to execute arbitrary commands via a user name that contains format string specifiers.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0154

больше 24 лет назад

HTML e-mail feature in Internet Explorer 5.5 and earlier allows attackers to execute attachments by setting an unusual MIME type for the attachment, which Internet Explorer does not process correctly.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2001-0153

больше 24 лет назад

Buffer overflow in VB-TSQL debugger object (vbsdicli.exe) in Visual Studio 6.0 Enterprise Edition allows remote attackers to execute arbitrary commands.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0152

больше 24 лет назад

The password protection option for the Compressed Folders feature in Plus! for Windows 98 and Windows Me writes password information to a file, which allows local users to recover the passwords and read the compressed folders.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0151

около 24 лет назад

IIS 5.0 allows remote attackers to cause a denial of service via a series of malformed WebDAV requests.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0150

около 24 лет назад

Internet Explorer 5.5 and earlier executes Telnet sessions using command line arguments that are specified by the web site, which could allow remote attackers to execute arbitrary commands if the IE client is using the Telnet client provided in Services for Unix (SFU) 2.0, which creates session transcripts.

CVSS2: 5.1
EPSS: Средний
nvd логотип

CVE-2001-0149

около 24 лет назад

Windows Scripting Host in Internet Explorer 5.5 and earlier allows remote attackers to read arbitrary files via the GetObject Javascript function and the htmlfile ActiveX object.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0148

около 24 лет назад

The WMP ActiveX Control in Windows Media Player 7 allows remote attackers to execute commands in Internet Explorer via javascript URLs, a variant of the "Frame Domain Verification" vulnerability.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2001-0147

больше 24 лет назад

Buffer overflow in Windows 2000 event viewer snap-in allows attackers to execute arbitrary commands via a malformed field that is improperly handled during the detailed view of event records.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2001-0146

около 24 лет назад

IIS 5.0 and Microsoft Exchange 2000 allow remote attackers to cause a denial of service (memory allocation error) by repeatedly sending a series of specially formatted URL's.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0145

больше 24 лет назад

Buffer overflow in VCard handler in Outlook 2000 and 98, and Outlook Express 5.x, allows an attacker to execute arbitrary commands via a malformed vCard birthday field.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2001-0144

больше 24 лет назад

CORE SDI SSH1 CRC-32 compensation attack detector allows remote attackers to execute arbitrary commands on an SSH server or client via an integer overflow.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2001-0143

больше 24 лет назад

vpop3d program in linuxconf 1.23r and earlier allows local users to overwrite arbitrary files via a symlink attack.

CVSS2: 1.2
EPSS: Низкий
nvd логотип

CVE-2001-0142

больше 24 лет назад

squid 2.3 and earlier allows local users to overwrite arbitrary files via a symlink attack in some configurations.

CVSS2: 1.2
EPSS: Низкий
nvd логотип

CVE-2001-0141

больше 24 лет назад

mgetty 1.1.22 allows local users to overwrite arbitrary files via a symlink attack in some configurations.

CVSS2: 1.2
EPSS: Низкий
nvd логотип

CVE-2001-0140

больше 24 лет назад

arpwatch 2.1a4 allows local users to overwrite arbitrary files via a symlink attack in some configurations.

CVSS2: 1.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-0161

Cisco 340-series Aironet access point using firmware 11.01 does not use 6 of the 24 available IV bits for WEP encryption, which makes it easier for remote attackers to mount brute force attacks.

CVSS2: 5
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-0160

Lucent/ORiNOCO WaveLAN cards generate predictable Initialization Vector (IV) values for the Wireless Encryption Protocol (WEP) which allows remote attackers to quickly compile information that will let them decrypt messages.

CVSS2: 5
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-0157

Debugging utility in the backdoor mode of Palm OS 3.5.2 and earlier allows attackers with physical access to a Palm device to bypass access restrictions and obtain passwords, even if the system lockout mechanism is enabled.

CVSS2: 4.6
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0156

VShell SSH gateway 1.0.1 and earlier has a default port forwarding rule of 0.0.0.0/0.0.0.0, which could allow local users to conduct arbitrary port forwarding to other systems.

CVSS2: 2.1
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0155

Format string vulnerability in VShell SSH gateway 1.0.1 and earlier allows remote attackers to execute arbitrary commands via a user name that contains format string specifiers.

CVSS2: 7.5
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-0154

HTML e-mail feature in Internet Explorer 5.5 and earlier allows attackers to execute attachments by setting an unusual MIME type for the attachment, which Internet Explorer does not process correctly.

CVSS2: 7.5
17%
Средний
больше 24 лет назад
nvd логотип
CVE-2001-0153

Buffer overflow in VB-TSQL debugger object (vbsdicli.exe) in Visual Studio 6.0 Enterprise Edition allows remote attackers to execute arbitrary commands.

CVSS2: 7.5
2%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-0152

The password protection option for the Compressed Folders feature in Plus! for Windows 98 and Windows Me writes password information to a file, which allows local users to recover the passwords and read the compressed folders.

CVSS2: 2.1
8%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-0151

IIS 5.0 allows remote attackers to cause a denial of service via a series of malformed WebDAV requests.

CVSS2: 5
20%
Средний
около 24 лет назад
nvd логотип
CVE-2001-0150

Internet Explorer 5.5 and earlier executes Telnet sessions using command line arguments that are specified by the web site, which could allow remote attackers to execute arbitrary commands if the IE client is using the Telnet client provided in Services for Unix (SFU) 2.0, which creates session transcripts.

CVSS2: 5.1
14%
Средний
около 24 лет назад
nvd логотип
CVE-2001-0149

Windows Scripting Host in Internet Explorer 5.5 and earlier allows remote attackers to read arbitrary files via the GetObject Javascript function and the htmlfile ActiveX object.

CVSS2: 5
44%
Средний
около 24 лет назад
nvd логотип
CVE-2001-0148

The WMP ActiveX Control in Windows Media Player 7 allows remote attackers to execute commands in Internet Explorer via javascript URLs, a variant of the "Frame Domain Verification" vulnerability.

CVSS2: 7.5
14%
Средний
около 24 лет назад
nvd логотип
CVE-2001-0147

Buffer overflow in Windows 2000 event viewer snap-in allows attackers to execute arbitrary commands via a malformed field that is improperly handled during the detailed view of event records.

CVSS2: 10
14%
Средний
больше 24 лет назад
nvd логотип
CVE-2001-0146

IIS 5.0 and Microsoft Exchange 2000 allow remote attackers to cause a denial of service (memory allocation error) by repeatedly sending a series of specially formatted URL's.

CVSS2: 5
13%
Средний
около 24 лет назад
nvd логотип
CVE-2001-0145

Buffer overflow in VCard handler in Outlook 2000 and 98, and Outlook Express 5.x, allows an attacker to execute arbitrary commands via a malformed vCard birthday field.

CVSS2: 7.5
12%
Средний
больше 24 лет назад
nvd логотип
CVE-2001-0144

CORE SDI SSH1 CRC-32 compensation attack detector allows remote attackers to execute arbitrary commands on an SSH server or client via an integer overflow.

CVSS2: 10
64%
Средний
больше 24 лет назад
nvd логотип
CVE-2001-0143

vpop3d program in linuxconf 1.23r and earlier allows local users to overwrite arbitrary files via a symlink attack.

CVSS2: 1.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-0142

squid 2.3 and earlier allows local users to overwrite arbitrary files via a symlink attack in some configurations.

CVSS2: 1.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-0141

mgetty 1.1.22 allows local users to overwrite arbitrary files via a symlink attack in some configurations.

CVSS2: 1.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-0140

arpwatch 2.1a4 allows local users to overwrite arbitrary files via a symlink attack in some configurations.

CVSS2: 1.2
0%
Низкий
больше 24 лет назад

Уязвимостей на страницу