Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 315 895

Количество 315 895

nvd логотип

CVE-2001-0154

больше 24 лет назад

HTML e-mail feature in Internet Explorer 5.5 and earlier allows attackers to execute attachments by setting an unusual MIME type for the attachment, which Internet Explorer does not process correctly.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2001-0153

больше 24 лет назад

Buffer overflow in VB-TSQL debugger object (vbsdicli.exe) in Visual Studio 6.0 Enterprise Edition allows remote attackers to execute arbitrary commands.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0152

больше 24 лет назад

The password protection option for the Compressed Folders feature in Plus! for Windows 98 and Windows Me writes password information to a file, which allows local users to recover the passwords and read the compressed folders.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0151

больше 24 лет назад

IIS 5.0 allows remote attackers to cause a denial of service via a series of malformed WebDAV requests.

CVSS2: 5
EPSS: Высокий
nvd логотип

CVE-2001-0150

больше 24 лет назад

Internet Explorer 5.5 and earlier executes Telnet sessions using command line arguments that are specified by the web site, which could allow remote attackers to execute arbitrary commands if the IE client is using the Telnet client provided in Services for Unix (SFU) 2.0, which creates session transcripts.

CVSS2: 5.1
EPSS: Средний
nvd логотип

CVE-2001-0149

больше 24 лет назад

Windows Scripting Host in Internet Explorer 5.5 and earlier allows remote attackers to read arbitrary files via the GetObject Javascript function and the htmlfile ActiveX object.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0148

больше 24 лет назад

The WMP ActiveX Control in Windows Media Player 7 allows remote attackers to execute commands in Internet Explorer via javascript URLs, a variant of the "Frame Domain Verification" vulnerability.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2001-0147

больше 24 лет назад

Buffer overflow in Windows 2000 event viewer snap-in allows attackers to execute arbitrary commands via a malformed field that is improperly handled during the detailed view of event records.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2001-0146

больше 24 лет назад

IIS 5.0 and Microsoft Exchange 2000 allow remote attackers to cause a denial of service (memory allocation error) by repeatedly sending a series of specially formatted URL's.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0145

больше 24 лет назад

Buffer overflow in VCard handler in Outlook 2000 and 98, and Outlook Express 5.x, allows an attacker to execute arbitrary commands via a malformed vCard birthday field.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2001-0144

больше 24 лет назад

CORE SDI SSH1 CRC-32 compensation attack detector allows remote attackers to execute arbitrary commands on an SSH server or client via an integer overflow.

CVSS2: 10
EPSS: Высокий
nvd логотип

CVE-2001-0143

больше 24 лет назад

vpop3d program in linuxconf 1.23r and earlier allows local users to overwrite arbitrary files via a symlink attack.

CVSS2: 1.2
EPSS: Низкий
nvd логотип

CVE-2001-0142

больше 24 лет назад

squid 2.3 and earlier allows local users to overwrite arbitrary files via a symlink attack in some configurations.

CVSS2: 1.2
EPSS: Низкий
nvd логотип

CVE-2001-0141

больше 24 лет назад

mgetty 1.1.22 allows local users to overwrite arbitrary files via a symlink attack in some configurations.

CVSS2: 1.2
EPSS: Низкий
nvd логотип

CVE-2001-0140

больше 24 лет назад

arpwatch 2.1a4 allows local users to overwrite arbitrary files via a symlink attack in some configurations.

CVSS2: 1.2
EPSS: Низкий
nvd логотип

CVE-2001-0139

больше 24 лет назад

inn 2.2.3 allows local users to overwrite arbitrary files via a symlink attack in some configurations.

CVSS2: 1.2
EPSS: Низкий
nvd логотип

CVE-2001-0138

больше 24 лет назад

privatepw program in wu-ftpd before 2.6.1-6 allows local users to overwrite arbitrary files via a symlink attack.

CVSS2: 1.2
EPSS: Низкий
nvd логотип

CVE-2001-0137

больше 24 лет назад

Windows Media Player 7 allows remote attackers to execute malicious Java applets in Internet Explorer clients by enclosing the applet in a skin file named skin.wmz, then referencing that skin in the codebase parameter to an applet tag, aka the Windows Media Player Skins File Download" vulnerability.

CVSS2: 5.1
EPSS: Низкий
nvd логотип

CVE-2001-0136

больше 24 лет назад

Memory leak in ProFTPd 1.2.0rc2 allows remote attackers to cause a denial of service via a series of USER commands, and possibly SIZE commands if the server has been improperly installed.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0135

больше 24 лет назад

The default installation of Ultraboard 2000 2.11 creates the Skins, Database, and Backups directories with world-writeable permissions, which could allow local users to modify sensitive information or possibly insert and execute CGI programs.

CVSS2: 2.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-0154

HTML e-mail feature in Internet Explorer 5.5 and earlier allows attackers to execute attachments by setting an unusual MIME type for the attachment, which Internet Explorer does not process correctly.

CVSS2: 7.5
17%
Средний
больше 24 лет назад
nvd логотип
CVE-2001-0153

Buffer overflow in VB-TSQL debugger object (vbsdicli.exe) in Visual Studio 6.0 Enterprise Edition allows remote attackers to execute arbitrary commands.

CVSS2: 7.5
3%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-0152

The password protection option for the Compressed Folders feature in Plus! for Windows 98 and Windows Me writes password information to a file, which allows local users to recover the passwords and read the compressed folders.

CVSS2: 2.1
8%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-0151

IIS 5.0 allows remote attackers to cause a denial of service via a series of malformed WebDAV requests.

CVSS2: 5
80%
Высокий
больше 24 лет назад
nvd логотип
CVE-2001-0150

Internet Explorer 5.5 and earlier executes Telnet sessions using command line arguments that are specified by the web site, which could allow remote attackers to execute arbitrary commands if the IE client is using the Telnet client provided in Services for Unix (SFU) 2.0, which creates session transcripts.

CVSS2: 5.1
14%
Средний
больше 24 лет назад
nvd логотип
CVE-2001-0149

Windows Scripting Host in Internet Explorer 5.5 and earlier allows remote attackers to read arbitrary files via the GetObject Javascript function and the htmlfile ActiveX object.

CVSS2: 5
37%
Средний
больше 24 лет назад
nvd логотип
CVE-2001-0148

The WMP ActiveX Control in Windows Media Player 7 allows remote attackers to execute commands in Internet Explorer via javascript URLs, a variant of the "Frame Domain Verification" vulnerability.

CVSS2: 7.5
14%
Средний
больше 24 лет назад
nvd логотип
CVE-2001-0147

Buffer overflow in Windows 2000 event viewer snap-in allows attackers to execute arbitrary commands via a malformed field that is improperly handled during the detailed view of event records.

CVSS2: 10
14%
Средний
больше 24 лет назад
nvd логотип
CVE-2001-0146

IIS 5.0 and Microsoft Exchange 2000 allow remote attackers to cause a denial of service (memory allocation error) by repeatedly sending a series of specially formatted URL's.

CVSS2: 5
12%
Средний
больше 24 лет назад
nvd логотип
CVE-2001-0145

Buffer overflow in VCard handler in Outlook 2000 and 98, and Outlook Express 5.x, allows an attacker to execute arbitrary commands via a malformed vCard birthday field.

CVSS2: 7.5
12%
Средний
больше 24 лет назад
nvd логотип
CVE-2001-0144

CORE SDI SSH1 CRC-32 compensation attack detector allows remote attackers to execute arbitrary commands on an SSH server or client via an integer overflow.

CVSS2: 10
74%
Высокий
больше 24 лет назад
nvd логотип
CVE-2001-0143

vpop3d program in linuxconf 1.23r and earlier allows local users to overwrite arbitrary files via a symlink attack.

CVSS2: 1.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-0142

squid 2.3 and earlier allows local users to overwrite arbitrary files via a symlink attack in some configurations.

CVSS2: 1.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-0141

mgetty 1.1.22 allows local users to overwrite arbitrary files via a symlink attack in some configurations.

CVSS2: 1.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-0140

arpwatch 2.1a4 allows local users to overwrite arbitrary files via a symlink attack in some configurations.

CVSS2: 1.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-0139

inn 2.2.3 allows local users to overwrite arbitrary files via a symlink attack in some configurations.

CVSS2: 1.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-0138

privatepw program in wu-ftpd before 2.6.1-6 allows local users to overwrite arbitrary files via a symlink attack.

CVSS2: 1.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-0137

Windows Media Player 7 allows remote attackers to execute malicious Java applets in Internet Explorer clients by enclosing the applet in a skin file named skin.wmz, then referencing that skin in the codebase parameter to an applet tag, aka the Windows Media Player Skins File Download" vulnerability.

CVSS2: 5.1
7%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-0136

Memory leak in ProFTPd 1.2.0rc2 allows remote attackers to cause a denial of service via a series of USER commands, and possibly SIZE commands if the server has been improperly installed.

CVSS2: 5
1%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-0135

The default installation of Ultraboard 2000 2.11 creates the Skins, Database, and Backups directories with world-writeable permissions, which could allow local users to modify sensitive information or possibly insert and execute CGI programs.

CVSS2: 2.1
0%
Низкий
больше 24 лет назад

Уязвимостей на страницу