Логотип exploitDog
source:"nvd"
Консоль
Логотип exploitDog

exploitDog

source:"nvd"

Количество 343 774

Количество 343 774

nvd логотип

CVE-2001-1187

больше 24 лет назад

csvform.pl 0.1 allows remote attackers to execute arbitrary commands via metacharacters in the file parameter.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1186

больше 24 лет назад

Microsoft IIS 5.0 allows remote attackers to cause a denial of service via an HTTP request with a content-length value that is larger than the size of the request, which prevents IIS from timing out the connection.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-1185

больше 24 лет назад

Some AIO operations in FreeBSD 4.4 may be delayed until after a call to execve, which could allow a local user to overwrite memory of the new process and gain privileges.

CVSS2: 6.2
EPSS: Низкий
nvd логотип

CVE-2001-1184

больше 24 лет назад

wrshdsp.exe in Denicomp Winsock RSHD/NT 2.21.00 and earlier allows remote attackers to cause a denial of service (CPU consumption) via (1) in 2.20.00 and earlier, an invalid port number such as a negative number, which causes a connection attempt to that port and all ports below 1024, and (2) in 2.21.00, a port number of 1024.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-1183

больше 24 лет назад

PPTP implementation in Cisco IOS 12.1 and 12.2 allows remote attackers to cause a denial of service (crash) via a malformed packet.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1182

больше 24 лет назад

Vulnerability in login in HP-UX 11.00, 11.11, and 10.20 allows restricted shell users to bypass certain security checks and gain privileges.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-1181

больше 24 лет назад

Dynamically Loadable Kernel Module (dlkm) static kernel symbol table in HP-UX 11.11 is not properly configured, which allows local users to gain privileges.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-1180

почти 25 лет назад

FreeBSD 4.3 does not properly clear shared signal handlers when executing a process, which allows local users to gain privileges by calling rfork with a shared signal handler, having the child process execute a setuid program, and sending a signal to the child.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-1179

больше 24 лет назад

xman allows local users to gain privileges by modifying the MANPATH to point to a man page whose filename contains shell metacharacters.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-1178

почти 25 лет назад

Buffer overflow in xman allows local users to gain privileges via a long MANPATH environment variable.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-1177

больше 24 лет назад

ml85p in Samsung ML-85G GDI printer driver before 0.2.0 allows local users to overwrite arbitrary files via a symlink attack on temporary files.

CVSS2: 6.2
EPSS: Низкий
nvd логотип

CVE-2001-1176

больше 24 лет назад

Format string vulnerability in Check Point VPN-1/FireWall-1 4.1 allows a remote authenticated firewall administrator to execute arbitrary code via format strings in the control connection.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1175

около 24 лет назад

vipw in the util-linux package before 2.10 causes /etc/shadow to be world-readable in some cases, which would make it easier for local users to perform brute force password guessing.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-1174

около 24 лет назад

Buffer overflow in Elm 2.5.5 and earlier allows remote attackers to execute arbitrary code via a long Message-ID header.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1173

больше 24 лет назад

Vulnerability in MasqMail before 0.1.15 allows local users to gain privileges via piped aliases.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-1172

больше 24 лет назад

OmniSecure HTTProtect 1.1.1 allows a superuser without omnish privileges to modify a protected file by creating a symbolic link to that file.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-1171

около 24 лет назад

Check Point Firewall-1 3.0b through 4.0 SP1 follows symlinks and creates a world-writable temporary .cpp file when compiling Policy rules, which could allow local users to gain privileges or modify the firewall policy.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-1170

больше 24 лет назад

AmTote International homebet program stores the homebet.log file in the homebet/ virtual directory, which allows remote attackers to steal account and PIN numbers.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1169

больше 24 лет назад

keyinit in S/Key does not require authentication to initialize a one-time password sequence, which allows an attacker who has gained privileges to a user account to create new one-time passwords for use in other activities that may use S/Key authentication, such as sudo.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1168

больше 24 лет назад

Directory traversal vulnerability in index.php in PhpMyExplorer before 1.2.1 allows remote attackers to read arbitrary files via a ..%2F (modified dot dot) in the chemin parameter.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-1187

csvform.pl 0.1 allows remote attackers to execute arbitrary commands via metacharacters in the file parameter.

CVSS2: 7.5
2%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-1186

Microsoft IIS 5.0 allows remote attackers to cause a denial of service via an HTTP request with a content-length value that is larger than the size of the request, which prevents IIS from timing out the connection.

CVSS2: 5
25%
Средний
больше 24 лет назад
nvd логотип
CVE-2001-1185

Some AIO operations in FreeBSD 4.4 may be delayed until after a call to execve, which could allow a local user to overwrite memory of the new process and gain privileges.

CVSS2: 6.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-1184

wrshdsp.exe in Denicomp Winsock RSHD/NT 2.21.00 and earlier allows remote attackers to cause a denial of service (CPU consumption) via (1) in 2.20.00 and earlier, an invalid port number such as a negative number, which causes a connection attempt to that port and all ports below 1024, and (2) in 2.21.00, a port number of 1024.

CVSS2: 5
19%
Средний
больше 24 лет назад
nvd логотип
CVE-2001-1183

PPTP implementation in Cisco IOS 12.1 and 12.2 allows remote attackers to cause a denial of service (crash) via a malformed packet.

CVSS2: 5
2%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-1182

Vulnerability in login in HP-UX 11.00, 11.11, and 10.20 allows restricted shell users to bypass certain security checks and gain privileges.

CVSS2: 7.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-1181

Dynamically Loadable Kernel Module (dlkm) static kernel symbol table in HP-UX 11.11 is not properly configured, which allows local users to gain privileges.

CVSS2: 7.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-1180

FreeBSD 4.3 does not properly clear shared signal handlers when executing a process, which allows local users to gain privileges by calling rfork with a shared signal handler, having the child process execute a setuid program, and sending a signal to the child.

CVSS2: 7.2
0%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-1179

xman allows local users to gain privileges by modifying the MANPATH to point to a man page whose filename contains shell metacharacters.

CVSS2: 7.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-1178

Buffer overflow in xman allows local users to gain privileges via a long MANPATH environment variable.

CVSS2: 7.2
0%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-1177

ml85p in Samsung ML-85G GDI printer driver before 0.2.0 allows local users to overwrite arbitrary files via a symlink attack on temporary files.

CVSS2: 6.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-1176

Format string vulnerability in Check Point VPN-1/FireWall-1 4.1 allows a remote authenticated firewall administrator to execute arbitrary code via format strings in the control connection.

CVSS2: 7.5
2%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-1175

vipw in the util-linux package before 2.10 causes /etc/shadow to be world-readable in some cases, which would make it easier for local users to perform brute force password guessing.

CVSS2: 7.2
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1174

Buffer overflow in Elm 2.5.5 and earlier allows remote attackers to execute arbitrary code via a long Message-ID header.

CVSS2: 7.5
4%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1173

Vulnerability in MasqMail before 0.1.15 allows local users to gain privileges via piped aliases.

CVSS2: 7.2
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-1172

OmniSecure HTTProtect 1.1.1 allows a superuser without omnish privileges to modify a protected file by creating a symbolic link to that file.

CVSS2: 4.6
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-1171

Check Point Firewall-1 3.0b through 4.0 SP1 follows symlinks and creates a world-writable temporary .cpp file when compiling Policy rules, which could allow local users to gain privileges or modify the firewall policy.

CVSS2: 7.2
0%
Низкий
около 24 лет назад
nvd логотип
CVE-2001-1170

AmTote International homebet program stores the homebet.log file in the homebet/ virtual directory, which allows remote attackers to steal account and PIN numbers.

CVSS2: 5
3%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-1169

keyinit in S/Key does not require authentication to initialize a one-time password sequence, which allows an attacker who has gained privileges to a user account to create new one-time passwords for use in other activities that may use S/Key authentication, such as sudo.

CVSS2: 7.5
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-1168

Directory traversal vulnerability in index.php in PhpMyExplorer before 1.2.1 allows remote attackers to read arbitrary files via a ..%2F (modified dot dot) in the chemin parameter.

CVSS2: 5
1%
Низкий
больше 24 лет назад

Уязвимостей на страницу