Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 331 703

Количество 331 703

nvd логотип

CVE-2001-0022

почти 25 лет назад

simplestguest.cgi CGI program by Leif Wright allows remote attackers to execute arbitrary commands via shell metacharacters in the guestbook parameter.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2001-0021

почти 25 лет назад

MailMan Webmail 3.0.25 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the alternate_template parameter.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2001-0020

почти 25 лет назад

Directory traversal vulnerability in Arrowpoint (aka Cisco Content Services, or CSS) allows local unprivileged users to read arbitrary files via a .. (dot dot) attack.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0019

почти 25 лет назад

Arrowpoint (aka Cisco Content Services, or CSS) allows local users to cause a denial of service via a long argument to the "show script," "clear script," "show archive," "clear archive," "show log," or "clear log" commands.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0018

больше 24 лет назад

Windows 2000 domain controller in Windows 2000 Server, Advanced Server, or Datacenter Server allows remote attackers to cause a denial of service via a flood of malformed service requests.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0017

почти 25 лет назад

Memory leak in PPTP server in Windows NT 4.0 allows remote attackers to cause a denial of service via a malformed data packet, aka the "Malformed PPTP Packet Stream" vulnerability.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0016

почти 25 лет назад

NTLM Security Support Provider (NTLMSSP) service does not properly check the function number in an LPC request, which could allow local users to gain administrator level access.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0015

почти 25 лет назад

Network Dynamic Data Exchange (DDE) in Windows 2000 allows local users to gain SYSTEM privileges via a "WM_COPYDATA" message to an invisible window that is running with the privileges of the WINLOGON process.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0014

почти 25 лет назад

Remote Data Protocol (RDP) in Windows 2000 Terminal Service does not properly handle certain malformed packets, which allows remote attackers to cause a denial of service, aka the "Invalid RDP Data" vulnerability.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0013

почти 25 лет назад

Format string vulnerability in nslookupComplain function in BIND 4 allows remote attackers to gain root privileges.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2001-0012

почти 25 лет назад

BIND 4 and BIND 8 allow remote attackers to access sensitive information such as environment variables.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0011

почти 25 лет назад

Buffer overflow in nslookupComplain function in BIND 4 allows remote attackers to gain root privileges.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2001-0010

почти 25 лет назад

Buffer overflow in transaction signature (TSIG) handling code in BIND 8 allows remote attackers to gain root privileges.

CVSS2: 10
EPSS: Высокий
nvd логотип

CVE-2001-0009

почти 25 лет назад

Directory traversal vulnerability in Lotus Domino 5.0.5 web server allows remote attackers to read arbitrary files via a .. attack.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0008

почти 25 лет назад

Backdoor account in Interbase database server allows remote attackers to overwrite arbitrary files using stored procedures.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2001-0007

почти 25 лет назад

Buffer overflow in NetScreen Firewall WebUI allows remote attackers to cause a denial of service via a long URL request to the web administration interface.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0006

почти 25 лет назад

The Winsock2ProtocolCatalogMutex mutex in Windows NT 4.0 has inappropriate Everyone/Full Control permissions, which allows local users to modify the permissions to "No Access" and disable Winsock network connectivity to cause a denial of service, aka the "Winsock Mutex" vulnerability.

CVSS3: 7.1
EPSS: Низкий
nvd логотип

CVE-2001-0005

почти 25 лет назад

Buffer overflow in the parsing mechanism of the file loader in Microsoft PowerPoint 2000 allows attackers to execute arbitrary commands.

CVSS2: 6.2
EPSS: Низкий
nvd логотип

CVE-2001-0004

почти 25 лет назад

IIS 5.0 and 4.0 allows remote attackers to read the source code for executable web server programs by appending "%3F+.htr" to the requested URL, which causes the files to be parsed by the .HTR ISAPI extension, aka a variant of the "File Fragment Reading via .HTR" vulnerability.

CVSS2: 5
EPSS: Высокий
nvd логотип

CVE-2001-0003

почти 25 лет назад

Web Extender Client (WEC) in Microsoft Office 2000, Windows 2000, and Windows Me does not properly process Internet Explorer security settings for NTLM authentication, which allows attackers to obtain NTLM credentials and possibly obtain the password, aka the "Web Client NTLM Authentication" vulnerability.

CVSS2: 5
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-0022

simplestguest.cgi CGI program by Leif Wright allows remote attackers to execute arbitrary commands via shell metacharacters in the guestbook parameter.

CVSS2: 10
5%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0021

MailMan Webmail 3.0.25 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in the alternate_template parameter.

CVSS2: 10
10%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0020

Directory traversal vulnerability in Arrowpoint (aka Cisco Content Services, or CSS) allows local unprivileged users to read arbitrary files via a .. (dot dot) attack.

CVSS2: 2.1
0%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0019

Arrowpoint (aka Cisco Content Services, or CSS) allows local users to cause a denial of service via a long argument to the "show script," "clear script," "show archive," "clear archive," "show log," or "clear log" commands.

CVSS2: 2.1
0%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0018

Windows 2000 domain controller in Windows 2000 Server, Advanced Server, or Datacenter Server allows remote attackers to cause a denial of service via a flood of malformed service requests.

CVSS2: 5
40%
Средний
больше 24 лет назад
nvd логотип
CVE-2001-0017

Memory leak in PPTP server in Windows NT 4.0 allows remote attackers to cause a denial of service via a malformed data packet, aka the "Malformed PPTP Packet Stream" vulnerability.

CVSS2: 5
19%
Средний
почти 25 лет назад
nvd логотип
CVE-2001-0016

NTLM Security Support Provider (NTLMSSP) service does not properly check the function number in an LPC request, which could allow local users to gain administrator level access.

CVSS2: 7.2
1%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0015

Network Dynamic Data Exchange (DDE) in Windows 2000 allows local users to gain SYSTEM privileges via a "WM_COPYDATA" message to an invisible window that is running with the privileges of the WINLOGON process.

CVSS2: 7.2
3%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0014

Remote Data Protocol (RDP) in Windows 2000 Terminal Service does not properly handle certain malformed packets, which allows remote attackers to cause a denial of service, aka the "Invalid RDP Data" vulnerability.

CVSS2: 5
21%
Средний
почти 25 лет назад
nvd логотип
CVE-2001-0013

Format string vulnerability in nslookupComplain function in BIND 4 allows remote attackers to gain root privileges.

CVSS2: 10
19%
Средний
почти 25 лет назад
nvd логотип
CVE-2001-0012

BIND 4 and BIND 8 allow remote attackers to access sensitive information such as environment variables.

CVSS2: 5
17%
Средний
почти 25 лет назад
nvd логотип
CVE-2001-0011

Buffer overflow in nslookupComplain function in BIND 4 allows remote attackers to gain root privileges.

CVSS2: 10
7%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0010

Buffer overflow in transaction signature (TSIG) handling code in BIND 8 allows remote attackers to gain root privileges.

CVSS2: 10
82%
Высокий
почти 25 лет назад
nvd логотип
CVE-2001-0009

Directory traversal vulnerability in Lotus Domino 5.0.5 web server allows remote attackers to read arbitrary files via a .. attack.

CVSS2: 5
7%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0008

Backdoor account in Interbase database server allows remote attackers to overwrite arbitrary files using stored procedures.

CVSS2: 10
20%
Средний
почти 25 лет назад
nvd логотип
CVE-2001-0007

Buffer overflow in NetScreen Firewall WebUI allows remote attackers to cause a denial of service via a long URL request to the web administration interface.

CVSS2: 5
6%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0006

The Winsock2ProtocolCatalogMutex mutex in Windows NT 4.0 has inappropriate Everyone/Full Control permissions, which allows local users to modify the permissions to "No Access" and disable Winsock network connectivity to cause a denial of service, aka the "Winsock Mutex" vulnerability.

CVSS3: 7.1
0%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0005

Buffer overflow in the parsing mechanism of the file loader in Microsoft PowerPoint 2000 allows attackers to execute arbitrary commands.

CVSS2: 6.2
0%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0004

IIS 5.0 and 4.0 allows remote attackers to read the source code for executable web server programs by appending "%3F+.htr" to the requested URL, which causes the files to be parsed by the .HTR ISAPI extension, aka a variant of the "File Fragment Reading via .HTR" vulnerability.

CVSS2: 5
74%
Высокий
почти 25 лет назад
nvd логотип
CVE-2001-0003

Web Extender Client (WEC) in Microsoft Office 2000, Windows 2000, and Windows Me does not properly process Internet Explorer security settings for NTLM authentication, which allows attackers to obtain NTLM credentials and possibly obtain the password, aka the "Web Client NTLM Authentication" vulnerability.

CVSS2: 5
29%
Средний
почти 25 лет назад

Уязвимостей на страницу