Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 361 564

Количество 361 564

nvd логотип

CVE-2001-1276

около 25 лет назад

ispell before 3.1.20 allows local users to overwrite files of other users via a symlink attack on a temporary file.

CVSS2: 1.2
EPSS: Низкий
nvd логотип

CVE-2001-1275

больше 25 лет назад

MySQL before 3.23.31 allows users with a MySQL account to use the SHOW GRANTS command to obtain the encrypted administrator password from the mysql.user table and possibly gain privileges via password cracking.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-1274

больше 25 лет назад

Buffer overflow in MySQL before 3.23.31 allows attackers to cause a denial of service and possibly gain privileges.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1273

больше 25 лет назад

The "mxcsr P4" vulnerability in the Linux kernel before 2.2.17-14, when running on certain Intel CPUs, allows local users to cause a denial of service (system halt).

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-1272

больше 24 лет назад

wmtv 0.6.5 and earlier does not properly drop privileges, which allows local users to execute arbitrary commands via the -e (external command) option.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-1271

около 25 лет назад

Directory traversal vulnerability in rar 2.02 and earlier allows attackers to overwrite arbitrary files during archive extraction via a .. (dot dot) attack on archived filenames.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-1270

около 25 лет назад

Directory traversal vulnerability in the console version of PKZip (pkzipc) 4.00 and earlier allows attackers to overwrite arbitrary files during archive extraction with the -rec (recursive) option via a .. (dot dot) attack on the archived files.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-1269

около 25 лет назад

Info-ZIP UnZip 5.42 and earlier allows attackers to overwrite arbitrary files during archive extraction via filenames in the archive that begin with the '/' (slash) character.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-1268

около 25 лет назад

Directory traversal vulnerability in Info-ZIP UnZip 5.42 and earlier allows attackers to overwrite arbitrary files during archive extraction via a .. (dot dot) in an extracted filename.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-1267

около 25 лет назад

Directory traversal vulnerability in GNU tar 1.13.19 and earlier allows local users to overwrite arbitrary files during archive extraction via a tar file whose filenames contain a .. (dot dot).

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-1266

около 25 лет назад

Directory traversal vulnerability in Doug Neal's HTTPD Daemon (DNHTTPD) before 0.4.1 allows remote attackers to view arbitrary files via a .. (dot dot) attack using the dot hex code '%2E'.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1265

около 25 лет назад

Directory traversal vulnerability in IBM alphaWorks Java TFTP server 1.21 allows remote attackers to conduct unauthorized operations on arbitrary files via a .. (dot dot) attack.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1264

около 25 лет назад

Vulnerability in mkacct in HP-UX 11.04 running Virtualvault Operating System (VVOS) 4.0 and 4.5 allows attackers to elevate privileges.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2001-1263

около 25 лет назад

telnet95.exe in Pragma InterAccess 4.0 build 5 allows remote attackers to cause a denial of service (crash) via a large number of characters to port 23, possibly due to a buffer overflow.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1262

около 25 лет назад

Avaya Argent Office 2.1 compares a user-provided SNMP community string with the correct string only up to the length of the user-provided string, which allows remote attackers to bypass authentication with a 0 length community string.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-1261

около 25 лет назад

Avaya Argent Office 2.1 may allow remote attackers to change hold music by spoofing a legitimate server's response to a TFTP broadcast and providing an alternate HoldMusic file.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1260

около 25 лет назад

Avaya Argent Office uses weak encryption (trivial encoding) for passwords, which allows remote attackers to gain administrator privileges by sniffing and decrypting the sniffing the passwords during a system reboot.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2001-1259

около 25 лет назад

Avaya Argent Office allows remote attackers to cause a denial of service by sending UDP packets to port 53 with no payload.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-1258

около 25 лет назад

Horde Internet Messaging Program (IMP) before 2.2.6 allows local users to read IMP configuration files and steal the Horde database password by placing the prefs.lang file containing PHP code on the server.

CVSS2: 3.6
EPSS: Низкий
nvd логотип

CVE-2001-1257

около 25 лет назад

Cross-site scripting vulnerability in Horde Internet Messaging Program (IMP) before 2.2.6 and 1.2.6 allows remote attackers to execute arbitrary Javascript embedded in an email.

CVSS2: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-1276

ispell before 3.1.20 allows local users to overwrite files of other users via a symlink attack on a temporary file.

CVSS2: 1.2
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-1275

MySQL before 3.23.31 allows users with a MySQL account to use the SHOW GRANTS command to obtain the encrypted administrator password from the mysql.user table and possibly gain privileges via password cracking.

CVSS2: 7.2
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-1274

Buffer overflow in MySQL before 3.23.31 allows attackers to cause a denial of service and possibly gain privileges.

CVSS2: 7.5
5%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-1273

The "mxcsr P4" vulnerability in the Linux kernel before 2.2.17-14, when running on certain Intel CPUs, allows local users to cause a denial of service (system halt).

CVSS2: 2.1
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-1272

wmtv 0.6.5 and earlier does not properly drop privileges, which allows local users to execute arbitrary commands via the -e (external command) option.

CVSS2: 4.6
0%
Низкий
больше 24 лет назад
nvd логотип
CVE-2001-1271

Directory traversal vulnerability in rar 2.02 and earlier allows attackers to overwrite arbitrary files during archive extraction via a .. (dot dot) attack on archived filenames.

CVSS2: 2.1
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-1270

Directory traversal vulnerability in the console version of PKZip (pkzipc) 4.00 and earlier allows attackers to overwrite arbitrary files during archive extraction with the -rec (recursive) option via a .. (dot dot) attack on the archived files.

CVSS2: 2.1
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-1269

Info-ZIP UnZip 5.42 and earlier allows attackers to overwrite arbitrary files during archive extraction via filenames in the archive that begin with the '/' (slash) character.

CVSS2: 2.1
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-1268

Directory traversal vulnerability in Info-ZIP UnZip 5.42 and earlier allows attackers to overwrite arbitrary files during archive extraction via a .. (dot dot) in an extracted filename.

CVSS2: 2.1
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-1267

Directory traversal vulnerability in GNU tar 1.13.19 and earlier allows local users to overwrite arbitrary files during archive extraction via a tar file whose filenames contain a .. (dot dot).

CVSS2: 2.1
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-1266

Directory traversal vulnerability in Doug Neal's HTTPD Daemon (DNHTTPD) before 0.4.1 allows remote attackers to view arbitrary files via a .. (dot dot) attack using the dot hex code '%2E'.

CVSS2: 5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-1265

Directory traversal vulnerability in IBM alphaWorks Java TFTP server 1.21 allows remote attackers to conduct unauthorized operations on arbitrary files via a .. (dot dot) attack.

CVSS2: 7.5
4%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-1264

Vulnerability in mkacct in HP-UX 11.04 running Virtualvault Operating System (VVOS) 4.0 and 4.5 allows attackers to elevate privileges.

CVSS2: 10
4%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-1263

telnet95.exe in Pragma InterAccess 4.0 build 5 allows remote attackers to cause a denial of service (crash) via a large number of characters to port 23, possibly due to a buffer overflow.

CVSS2: 5
8%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-1262

Avaya Argent Office 2.1 compares a user-provided SNMP community string with the correct string only up to the length of the user-provided string, which allows remote attackers to bypass authentication with a 0 length community string.

CVSS2: 7.5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-1261

Avaya Argent Office 2.1 may allow remote attackers to change hold music by spoofing a legitimate server's response to a TFTP broadcast and providing an alternate HoldMusic file.

CVSS2: 5
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-1260

Avaya Argent Office uses weak encryption (trivial encoding) for passwords, which allows remote attackers to gain administrator privileges by sniffing and decrypting the sniffing the passwords during a system reboot.

CVSS2: 10
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-1259

Avaya Argent Office allows remote attackers to cause a denial of service by sending UDP packets to port 53 with no payload.

CVSS2: 5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-1258

Horde Internet Messaging Program (IMP) before 2.2.6 allows local users to read IMP configuration files and steal the Horde database password by placing the prefs.lang file containing PHP code on the server.

CVSS2: 3.6
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-1257

Cross-site scripting vulnerability in Horde Internet Messaging Program (IMP) before 2.2.6 and 1.2.6 allows remote attackers to execute arbitrary Javascript embedded in an email.

CVSS2: 7.5
2%
Низкий
около 25 лет назад

Уязвимостей на страницу