Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 308 751

Количество 308 751

nvd логотип

CVE-2001-0713

почти 24 года назад

Sendmail before 8.12.1 does not properly drop privileges when the -C option is used to load custom configuration files, which allows local users to gain privileges via malformed arguments in the configuration file whose names contain characters with the high bit set, such as (1) macro names that are one character long, (2) a variable setting which is processed by the setoption function, or (3) a Modifiers setting which is processed by the getmodifiers function.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0712

почти 24 года назад

The rendering engine in Internet Explorer determines the MIME type independently of the type that is specified by the server, which allows remote servers to automatically execute script which is placed in a file whose MIME type does not normally support scripting, such as text (.txt), JPEG (.jpg), etc.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0711

около 24 лет назад

Cisco IOS 11.x and 12.0 with ATM support allows attackers to cause a denial of service via the undocumented Interim Local Management Interface (ILMI) SNMP community string.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0710

почти 24 года назад

NetBSD 1.5 and earlier and FreeBSD 4.3 and earlier allows a remote attacker to cause a denial of service by sending a large number of IP fragments to the machine, exhausting the mbuf pool.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0709

почти 24 года назад

Microsoft IIS 4.0 and before, when installed on a FAT partition, allows a remote attacker to obtain source code of ASP files via a URL encoded with Unicode.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0708

почти 24 года назад

Denicomp REXECD 1.05 and earlier allows a remote attacker to cause a denial of service (crash) via a long string.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0707

почти 24 года назад

Denicomp RSHD 2.18 and earlier allows a remote attacker to cause a denial of service (crash) via a long string to port 514.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0706

почти 24 года назад

Maximum Rumpus FTP Server 2.0.3 dev and before allows an attacker to cause a denial of service (crash) via a mkdir command that specifies a large number of sub-folders.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0705

почти 24 года назад

Directory traversal vulnerability in tradecli.dll in Arcadia Internet Store 1.0 allows a remote attacker to read arbitrary files on the web server via a URL with "dot dot" sequences in the template argument.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0704

почти 24 года назад

tradecli.dll in Arcadia Internet Store 1.0 allows a remote attacker to discover the full path to the working directory via a URL with a template argument for a file that does not exist.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0703

почти 24 года назад

tradecli.dll in Arcadia Internet Store 1.0 allows a remote attacker to cause a denial of service via a URL request with an MS-DOS device name in the template parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0702

почти 24 года назад

Cerberus FTP 1.5 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long (1) username, (2) password, or (3) PASV command.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0701

почти 24 года назад

Buffer overflow in ptexec in the Sun Validation Test Suite 4.3 and earlier allows a local user to gain privileges via a long -o argument.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0700

почти 24 года назад

Buffer overflow in w3m 0.2.1 and earlier allows a remote attacker to execute arbitrary code via a long base64 encoded MIME header.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2001-0699

почти 24 года назад

Buffer overflow in cb_reset in the System Service Processor (SSP) package of SunOS 5.8 allows a local user to execute arbitrary code via a long argument.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0698

почти 24 года назад

Directory traversal vulnerability in NetWin SurgeFTP 2.0a and 1.0b allows a remote attacker to list arbitrary files and directories via the 'nlist ...' command.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0697

почти 24 года назад

NetWin SurgeFTP prior to 1.1h allows a remote attacker to cause a denial of service (crash) via an 'ls ..' command.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0696

почти 24 года назад

NetWin SurgeFTP 2.0a and 1.0b allows a remote attacker to cause a denial of service (crash) via a CD command to a directory with an MS-DOS device name such as con.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0695

почти 24 года назад

WFTPD 3.00 R5 allows a remote attacker to cause a denial of service by making repeated requests to cd to the floppy drive (A:\).

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0694

почти 24 года назад

Directory traversal vulnerability in WFTPD 3.00 R5 allows a remote attacker to view arbitrary files via a dot dot attack in the CD command.

CVSS2: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-0713

Sendmail before 8.12.1 does not properly drop privileges when the -C option is used to load custom configuration files, which allows local users to gain privileges via malformed arguments in the configuration file whose names contain characters with the high bit set, such as (1) macro names that are one character long, (2) a variable setting which is processed by the setoption function, or (3) a Modifiers setting which is processed by the getmodifiers function.

CVSS2: 4.6
0%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-0712

The rendering engine in Internet Explorer determines the MIME type independently of the type that is specified by the server, which allows remote servers to automatically execute script which is placed in a file whose MIME type does not normally support scripting, such as text (.txt), JPEG (.jpg), etc.

CVSS2: 7.5
10%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-0711

Cisco IOS 11.x and 12.0 with ATM support allows attackers to cause a denial of service via the undocumented Interim Local Management Interface (ILMI) SNMP community string.

CVSS2: 5
13%
Средний
около 24 лет назад
nvd логотип
CVE-2001-0710

NetBSD 1.5 and earlier and FreeBSD 4.3 and earlier allows a remote attacker to cause a denial of service by sending a large number of IP fragments to the machine, exhausting the mbuf pool.

CVSS2: 5
1%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-0709

Microsoft IIS 4.0 and before, when installed on a FAT partition, allows a remote attacker to obtain source code of ASP files via a URL encoded with Unicode.

CVSS2: 5
26%
Средний
почти 24 года назад
nvd логотип
CVE-2001-0708

Denicomp REXECD 1.05 and earlier allows a remote attacker to cause a denial of service (crash) via a long string.

CVSS2: 5
1%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-0707

Denicomp RSHD 2.18 and earlier allows a remote attacker to cause a denial of service (crash) via a long string to port 514.

CVSS2: 5
1%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-0706

Maximum Rumpus FTP Server 2.0.3 dev and before allows an attacker to cause a denial of service (crash) via a mkdir command that specifies a large number of sub-folders.

CVSS2: 2.1
1%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-0705

Directory traversal vulnerability in tradecli.dll in Arcadia Internet Store 1.0 allows a remote attacker to read arbitrary files on the web server via a URL with "dot dot" sequences in the template argument.

CVSS2: 5
3%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-0704

tradecli.dll in Arcadia Internet Store 1.0 allows a remote attacker to discover the full path to the working directory via a URL with a template argument for a file that does not exist.

CVSS2: 7.5
3%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-0703

tradecli.dll in Arcadia Internet Store 1.0 allows a remote attacker to cause a denial of service via a URL request with an MS-DOS device name in the template parameter.

CVSS2: 5
5%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-0702

Cerberus FTP 1.5 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary code, via a long (1) username, (2) password, or (3) PASV command.

CVSS2: 7.5
9%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-0701

Buffer overflow in ptexec in the Sun Validation Test Suite 4.3 and earlier allows a local user to gain privileges via a long -o argument.

CVSS2: 7.2
0%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-0700

Buffer overflow in w3m 0.2.1 and earlier allows a remote attacker to execute arbitrary code via a long base64 encoded MIME header.

CVSS2: 7.5
13%
Средний
почти 24 года назад
nvd логотип
CVE-2001-0699

Buffer overflow in cb_reset in the System Service Processor (SSP) package of SunOS 5.8 allows a local user to execute arbitrary code via a long argument.

CVSS2: 7.2
0%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-0698

Directory traversal vulnerability in NetWin SurgeFTP 2.0a and 1.0b allows a remote attacker to list arbitrary files and directories via the 'nlist ...' command.

CVSS2: 5
1%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-0697

NetWin SurgeFTP prior to 1.1h allows a remote attacker to cause a denial of service (crash) via an 'ls ..' command.

CVSS2: 5
6%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-0696

NetWin SurgeFTP 2.0a and 1.0b allows a remote attacker to cause a denial of service (crash) via a CD command to a directory with an MS-DOS device name such as con.

CVSS2: 5
1%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-0695

WFTPD 3.00 R5 allows a remote attacker to cause a denial of service by making repeated requests to cd to the floppy drive (A:\).

CVSS2: 5
1%
Низкий
почти 24 года назад
nvd логотип
CVE-2001-0694

Directory traversal vulnerability in WFTPD 3.00 R5 allows a remote attacker to view arbitrary files via a dot dot attack in the CD command.

CVSS2: 7.5
3%
Низкий
почти 24 года назад

Уязвимостей на страницу