Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 309 169

Количество 309 169

nvd логотип

CVE-2001-1302

около 24 лет назад

The change password option in the Windows Security interface for Windows 2000 allows attackers to use the option to attempt to change passwords of other users on other systems or identify valid accounts by monitoring error messages, possibly due to a problem in the NetuserChangePassword function.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-1301

около 24 лет назад

rcs2log, as used in Emacs 20.4, xemacs 21.1.10 and other versions before 21.4, and possibly other packages, allows local users to modify files of other users via a symlink attack on a temporary file.

CVSS2: 1.2
EPSS: Низкий
nvd логотип

CVE-2001-1300

около 23 лет назад

Directory traversal vulnerability in Dynu FTP server 1.05 and earlier allows remote attackers to read arbitrary files via a .. in the CD (CWD) command.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1299

почти 24 года назад

Zorbat Zorbstats PHP script before 0.9 allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1298

почти 24 года назад

Webodex PHP script 1.0 and earlier allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1297

почти 24 года назад

PHP remote file inclusion vulnerability in Actionpoll PHP script before 1.1.2 allows remote attackers to execute arbitrary PHP code via a URL in the includedir parameter.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1296

почти 24 года назад

More.groupware PHP script allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1295

около 24 лет назад

Directory traversal vulnerability in Cerberus FTP Server 1.5 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the CD command.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1294

около 24 лет назад

Buffer overflow in A-V Tronics Inetserv 3.2.1 and earlier allows remote attackers to cause a denial of service (crash) in the Webmail interface via a long username and password.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1293

почти 24 года назад

Buffer overflow in web server of 3com HomeConnect Cable Modem External with USB (#3CR29223) allows remote attackers to cause a denial of service (crash) via a long HTTP request.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1292

около 24 лет назад

Sambar Telnet Proxy/Server allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long password.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1291

около 24 лет назад

The telnet server for 3Com hardware such as PS40 SuperStack II does not delay or disconnect remote attackers who provide an incorrect username or password, which makes it easier to break into the server via brute force password guessing.

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2001-1290

около 24 лет назад

admin.cgi in Active Classifieds Free Edition 1.0, and possibly commercial versions, allows remote attackers to modify the configuration, gain privileges, and execute arbitrary Perl code via the table_width parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1289

около 24 лет назад

Quake 3 arena 1.29f and 1.29g allows remote attackers to cause a denial of service (crash) via a malformed connection packet that begins with several char-255 characters.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1288

около 24 лет назад

Windows 2000 and Windows NT allows local users to cause a denial of service (reboot) by executing a command at the command prompt and pressing the F7 and enter keys several times while the command is executing, possibly related to an exception handling error in csrss.exe.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-1287

почти 24 года назад

Buffer overflow in Web Calendar in Ipswitch IMail 7.04 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1286

почти 24 года назад

Ipswitch IMail 7.04 and earlier stores a user's session ID in a URL, which could allow remote attackers to hijack sessions by obtaining the URL, e.g. via an HTML email that causes the Referrer to be sent to a URL under the attacker's control.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1285

почти 24 года назад

Directory traversal vulnerability in readmail.cgi for Ipswitch IMail 7.04 and earlier allows remote attackers to access the mailboxes of other users via a .. (dot dot) in the mbx parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1284

почти 24 года назад

Ipswitch IMail 7.04 and earlier uses predictable session IDs for authentication, which allows remote attackers to hijack sessions of other users.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1283

почти 24 года назад

The webmail interface for Ipswitch IMail 7.04 and earlier allows remote authenticated users to cause a denial of service (crash) via a mailbox name that contains a large number of . (dot) or other characters to programs such as (1) readmail.cgi or (2) printmail.cgi, possibly due to a buffer overflow that may allow execution of arbitrary code.

CVSS2: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-1302

The change password option in the Windows Security interface for Windows 2000 allows attackers to use the option to attempt to change passwords of other users on other systems or identify valid accounts by monitoring error messages, possibly due to a problem in the NetuserChangePassword function.

CVSS2: 2.1
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1301

rcs2log, as used in Emacs 20.4, xemacs 21.1.10 and other versions before 21.4, and possibly other packages, allows local users to modify files of other users via a symlink attack on a temporary file.

CVSS2: 1.2
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1300

Directory traversal vulnerability in Dynu FTP server 1.05 and earlier allows remote attackers to read arbitrary files via a .. in the CD (CWD) command.

CVSS2: 5
0%
Низкий
около 23 лет назад
nvd логотип
CVE-2001-1299

Zorbat Zorbstats PHP script before 0.9 allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable.

CVSS2: 5
3%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-1298

Webodex PHP script 1.0 and earlier allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable.

CVSS2: 5
0%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-1297

PHP remote file inclusion vulnerability in Actionpoll PHP script before 1.1.2 allows remote attackers to execute arbitrary PHP code via a URL in the includedir parameter.

CVSS2: 7.5
1%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-1296

More.groupware PHP script allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable.

CVSS2: 5
1%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-1295

Directory traversal vulnerability in Cerberus FTP Server 1.5 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the CD command.

CVSS2: 5
2%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1294

Buffer overflow in A-V Tronics Inetserv 3.2.1 and earlier allows remote attackers to cause a denial of service (crash) in the Webmail interface via a long username and password.

CVSS2: 5
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1293

Buffer overflow in web server of 3com HomeConnect Cable Modem External with USB (#3CR29223) allows remote attackers to cause a denial of service (crash) via a long HTTP request.

CVSS2: 5
1%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-1292

Sambar Telnet Proxy/Server allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long password.

CVSS2: 7.5
3%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1291

The telnet server for 3Com hardware such as PS40 SuperStack II does not delay or disconnect remote attackers who provide an incorrect username or password, which makes it easier to break into the server via brute force password guessing.

CVSS3: 9.8
10%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1290

admin.cgi in Active Classifieds Free Edition 1.0, and possibly commercial versions, allows remote attackers to modify the configuration, gain privileges, and execute arbitrary Perl code via the table_width parameter.

CVSS2: 5
3%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1289

Quake 3 arena 1.29f and 1.29g allows remote attackers to cause a denial of service (crash) via a malformed connection packet that begins with several char-255 characters.

CVSS2: 5
1%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1288

Windows 2000 and Windows NT allows local users to cause a denial of service (reboot) by executing a command at the command prompt and pressing the F7 and enter keys several times while the command is executing, possibly related to an exception handling error in csrss.exe.

CVSS2: 2.1
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1287

Buffer overflow in Web Calendar in Ipswitch IMail 7.04 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request.

CVSS2: 7.5
6%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-1286

Ipswitch IMail 7.04 and earlier stores a user's session ID in a URL, which could allow remote attackers to hijack sessions by obtaining the URL, e.g. via an HTML email that causes the Referrer to be sent to a URL under the attacker's control.

CVSS2: 7.5
1%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-1285

Directory traversal vulnerability in readmail.cgi for Ipswitch IMail 7.04 and earlier allows remote attackers to access the mailboxes of other users via a .. (dot dot) in the mbx parameter.

CVSS2: 5
1%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-1284

Ipswitch IMail 7.04 and earlier uses predictable session IDs for authentication, which allows remote attackers to hijack sessions of other users.

CVSS2: 7.5
1%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-1283

The webmail interface for Ipswitch IMail 7.04 and earlier allows remote authenticated users to cause a denial of service (crash) via a mailbox name that contains a large number of . (dot) or other characters to programs such as (1) readmail.cgi or (2) printmail.cgi, possibly due to a buffer overflow that may allow execution of arbitrary code.

CVSS2: 7.5
2%
Низкий
почти 24 года назад

Уязвимостей на страницу