Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 367 614

Количество 367 614

nvd логотип

CVE-2001-0439

около 25 лет назад

licq before 1.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in a URL.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0438

около 25 лет назад

Preview version of Timbuktu for Mac OS X allows local users to modify System Preferences without logging in via the About Timbuktu menu.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0437

около 25 лет назад

upload_file.pl in DCForum 2000 1.0 allows remote attackers to upload arbitrary files without authentication by setting the az parameter to upload_file.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0436

около 25 лет назад

dcboard.cgi in DCForum 2000 1.0 allows remote attackers to execute arbitrary commands by uploading a Perl program to the server and using a .. (dot dot) in the AZ parameter to reference the program.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0435

около 25 лет назад

The split key mechanism used by PGP 7.0 allows a key share holder to obtain access to the entire key by setting the "Cache passphrase while logged on" option and capturing the passphrases of other share holders as they authenticate.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0434

около 25 лет назад

The LogDataListToFile ActiveX function used in (1) Knowledge Center and (2) Back web components of Compaq Presario computers allows remote attackers to modify arbitrary files and cause a denial of service.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2001-0433

около 25 лет назад

Buffer overflow in Savant 3.0 web server allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long Host HTTP header.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0432

около 25 лет назад

Buffer overflows in various CGI programs in the remote administration service for Trend Micro Interscan VirusWall 3.01 allow remote attackers to execute arbitrary commands.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2001-0431

около 25 лет назад

Vulnerability in iPlanet Web Server Enterprise Edition 4.x.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2001-0430

около 25 лет назад

Vulnerability in exuberant-ctags before 3.2.4-0.1 insecurely creates temporary files.

CVSS2: 3.6
EPSS: Низкий
nvd логотип

CVE-2001-0429

около 25 лет назад

Cisco Catalyst 5000 series switches 6.1(2) and earlier will forward an 802.1x frame on a Spanning Tree Protocol (STP) blocked port, which causes a network storm and a denial of service.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0428

около 25 лет назад

Cisco VPN 3000 series concentrators before 2.5.2(F) allow remote attackers to cause a denial of service via an IP packet with an invalid IP option.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0427

около 25 лет назад

Cisco VPN 3000 series concentrators before 2.5.2(F) allow remote attackers to cause a denial of service via a flood of invalid login requests to (1) the SSL service, or (2) the telnet service, which do not properly disconnect the user after several failed login attempts.

CVSS2: 7.1
EPSS: Низкий
nvd логотип

CVE-2001-0426

около 25 лет назад

Buffer overflow in dtsession on Solaris, and possibly other operating systems, allows local users to gain privileges via a long LANG environmental variable.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0425

около 25 лет назад

AdLibrary.pm in AdCycle 0.78b allows remote attackers to gain privileges to AdCycle via a malformed Agent: header in the HTTP request, which is inserted into a resulting SQL query that is used to verify login information.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0424

около 25 лет назад

BubbleMon 1.31 does not properly drop group privileges before executing programs, which allows local users to execute arbitrary commands with the kmem group id.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0423

около 25 лет назад

Buffer overflow in ipcs in Solaris 7 x86 allows local users to execute arbitrary code via a long TZ (timezone) environmental variable, a different vulnerability than CAN-2002-0093.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0422

около 25 лет назад

Buffer overflow in Xsun in Solaris 8 and earlier allows local users to execute arbitrary commands via a long HOME environmental variable.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0421

около 25 лет назад

FTP server in Solaris 8 and earlier allows local and remote attackers to cause a core dump in the root directory, possibly with world-readable permissions, by providing a valid username with an invalid password followed by a CWD ~ command, which could release sensitive information such as shadowed passwords, or fill the disk partition.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2001-0420

около 25 лет назад

Directory traversal vulnerability in talkback.cgi program allows remote attackers to read arbitrary files via a .. (dot dot) in the article parameter.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-0439

licq before 1.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in a URL.

CVSS2: 7.5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0438

Preview version of Timbuktu for Mac OS X allows local users to modify System Preferences without logging in via the About Timbuktu menu.

CVSS2: 2.1
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0437

upload_file.pl in DCForum 2000 1.0 allows remote attackers to upload arbitrary files without authentication by setting the az parameter to upload_file.

CVSS2: 5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0436

dcboard.cgi in DCForum 2000 1.0 allows remote attackers to execute arbitrary commands by uploading a Perl program to the server and using a .. (dot dot) in the AZ parameter to reference the program.

CVSS2: 7.5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0435

The split key mechanism used by PGP 7.0 allows a key share holder to obtain access to the entire key by setting the "Cache passphrase while logged on" option and capturing the passphrases of other share holders as they authenticate.

CVSS2: 4.6
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0434

The LogDataListToFile ActiveX function used in (1) Knowledge Center and (2) Back web components of Compaq Presario computers allows remote attackers to modify arbitrary files and cause a denial of service.

CVSS2: 6.4
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0433

Buffer overflow in Savant 3.0 web server allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long Host HTTP header.

CVSS2: 7.5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0432

Buffer overflows in various CGI programs in the remote administration service for Trend Micro Interscan VirusWall 3.01 allow remote attackers to execute arbitrary commands.

CVSS2: 10
11%
Средний
около 25 лет назад
nvd логотип
CVE-2001-0431

Vulnerability in iPlanet Web Server Enterprise Edition 4.x.

CVSS2: 10
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0430

Vulnerability in exuberant-ctags before 3.2.4-0.1 insecurely creates temporary files.

CVSS2: 3.6
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0429

Cisco Catalyst 5000 series switches 6.1(2) and earlier will forward an 802.1x frame on a Spanning Tree Protocol (STP) blocked port, which causes a network storm and a denial of service.

CVSS2: 5
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0428

Cisco VPN 3000 series concentrators before 2.5.2(F) allow remote attackers to cause a denial of service via an IP packet with an invalid IP option.

CVSS2: 5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0427

Cisco VPN 3000 series concentrators before 2.5.2(F) allow remote attackers to cause a denial of service via a flood of invalid login requests to (1) the SSL service, or (2) the telnet service, which do not properly disconnect the user after several failed login attempts.

CVSS2: 7.1
3%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0426

Buffer overflow in dtsession on Solaris, and possibly other operating systems, allows local users to gain privileges via a long LANG environmental variable.

CVSS2: 7.2
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0425

AdLibrary.pm in AdCycle 0.78b allows remote attackers to gain privileges to AdCycle via a malformed Agent: header in the HTTP request, which is inserted into a resulting SQL query that is used to verify login information.

CVSS2: 7.5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0424

BubbleMon 1.31 does not properly drop group privileges before executing programs, which allows local users to execute arbitrary commands with the kmem group id.

CVSS2: 7.2
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0423

Buffer overflow in ipcs in Solaris 7 x86 allows local users to execute arbitrary code via a long TZ (timezone) environmental variable, a different vulnerability than CAN-2002-0093.

CVSS2: 7.2
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0422

Buffer overflow in Xsun in Solaris 8 and earlier allows local users to execute arbitrary commands via a long HOME environmental variable.

CVSS2: 7.2
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0421

FTP server in Solaris 8 and earlier allows local and remote attackers to cause a core dump in the root directory, possibly with world-readable permissions, by providing a valid username with an invalid password followed by a CWD ~ command, which could release sensitive information such as shadowed passwords, or fill the disk partition.

CVSS2: 6.4
6%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0420

Directory traversal vulnerability in talkback.cgi program allows remote attackers to read arbitrary files via a .. (dot dot) in the article parameter.

CVSS2: 5
3%
Низкий
около 25 лет назад

Уязвимостей на страницу