Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 372 328

Количество 372 328

nvd логотип

CVE-2001-0621

почти 25 лет назад

The FTP server on Cisco Content Service 11000 series switches (CSS) before WebNS 4.01B23s and WebNS 4.10B13s allows an attacker who is an FTP user to read and write arbitrary files via GET or PUT commands.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0620

около 25 лет назад

iPlanet Calendar Server 5.0p2 and earlier allows a local attacker to gain access to the Netscape Admin Server (NAS) LDAP database and read arbitrary files by obtaining the cleartext administrator username and password from the configuration file, which has insecure permissions.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0619

около 25 лет назад

The Lucent Closed Network protocol can allow remote attackers to join Closed Network networks which they do not have access to. The 'Network Name' or SSID, which is used as a shared secret to join the network, is transmitted in the clear.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0618

около 25 лет назад

Orinoco RG-1000 wireless Residential Gateway uses the last 5 digits of the 'Network Name' or SSID as the default Wired Equivalent Privacy (WEP) encryption key. Since the SSID occurs in the clear during communications, a remote attacker could determine the WEP key and decrypt RG-1000 traffic.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0617

почти 25 лет назад

Allied Telesyn AT-AR220e cable/DSL router firmware 1.08a RC14 with the portmapper and the 'Virtual Server' enabled can allow a remote attacker to gain access to mapped services even though the single portmappings may be disabled.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0616

почти 25 лет назад

Faust Informatics Freestyle Chat server prior to 4.1 SR3 allows a remote attacker to create a denial of service via a URL request which includes a MS-DOS device name (e.g., GET /aux HTTP/1.0).

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0615

почти 25 лет назад

Directory traversal vulnerability in Faust Informatics Freestyle Chat server prior to 4.1 SR3 allows a remote attacker to read arbitrary files via a specially crafted URL which includes variations of a '..' (dot dot) attack such as '...' or '....'.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0614

почти 25 лет назад

Carello E-Commerce 1.2.1 and earlier allows a remote attacker to gain additional privileges and execute arbitrary commands via a specially constructed URL.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0613

почти 25 лет назад

Omnicron Technologies OmniHTTPD Professional 2.08 and earlier allows a remote attacker to create a denial of service via a long POST URL request.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0612

почти 25 лет назад

McAfee Remote Desktop 3.0 and earlier allows remote attackers to cause a denial of service (crash) via a large number of packets to port 5045.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0611

почти 25 лет назад

Becky! 2.00.05 and earlier can allow a remote attacker to gain additional privileges via a buffer overflow attack on long messages without newline characters.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0610

около 25 лет назад

kfm as included with KDE 1.x can allow a local attacker to gain additional privileges via a symlink attack in the kfm cache directory in /tmp.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0609

около 25 лет назад

Format string vulnerability in Infodrom cfingerd 1.4.3 and earlier allows a remote attacker to gain additional privileges via a malformed ident reply that is passed to the syslog function.

CVSS3: 9.8
EPSS: Средний
nvd логотип

CVE-2001-0608

почти 25 лет назад

HP architected interface facility (AIF) as includes with MPE/iX 5.5 through 6.5 running on a HP3000 allows an attacker to gain additional privileges and gain access to databases via the AIF - AIFCHANGELOGON program.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0607

почти 25 лет назад

asecure as included with HP-UX 10.01 through 11.00 can allow a local attacker to create a denial of service and gain additional privileges via unsafe permissions on the asecure program, a different vulnerability than CVE-2000-0083.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0606

почти 25 лет назад

Vulnerability in iPlanet Web Server 4.X in HP-UX 11.04 (VVOS) with VirtualVault A.04.00 allows a remote attacker to create a denial of service via the HTTPS service.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0605

почти 25 лет назад

Headlight Software MyGetright prior to 1.0b allows a remote attacker to upload and/or overwrite arbitrary files via a malicious .dld (skins-data) file which contains long strings of random data.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0604

около 25 лет назад

Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via URL requests (>8Kb) containing a large number of '/' characters.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0603

около 25 лет назад

Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via repeatedly sending large (> 10Kb) amounts of data to the DIIOP - CORBA service on TCP port 63148.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0602

около 25 лет назад

Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via repeated (>400) URL requests for DOS devices.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-0621

The FTP server on Cisco Content Service 11000 series switches (CSS) before WebNS 4.01B23s and WebNS 4.10B13s allows an attacker who is an FTP user to read and write arbitrary files via GET or PUT commands.

CVSS2: 7.5
1%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0620

iPlanet Calendar Server 5.0p2 and earlier allows a local attacker to gain access to the Netscape Admin Server (NAS) LDAP database and read arbitrary files by obtaining the cleartext administrator username and password from the configuration file, which has insecure permissions.

CVSS2: 2.1
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0619

The Lucent Closed Network protocol can allow remote attackers to join Closed Network networks which they do not have access to. The 'Network Name' or SSID, which is used as a shared secret to join the network, is transmitted in the clear.

CVSS2: 7.5
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0618

Orinoco RG-1000 wireless Residential Gateway uses the last 5 digits of the 'Network Name' or SSID as the default Wired Equivalent Privacy (WEP) encryption key. Since the SSID occurs in the clear during communications, a remote attacker could determine the WEP key and decrypt RG-1000 traffic.

CVSS2: 7.5
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0617

Allied Telesyn AT-AR220e cable/DSL router firmware 1.08a RC14 with the portmapper and the 'Virtual Server' enabled can allow a remote attacker to gain access to mapped services even though the single portmappings may be disabled.

CVSS2: 7.5
1%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0616

Faust Informatics Freestyle Chat server prior to 4.1 SR3 allows a remote attacker to create a denial of service via a URL request which includes a MS-DOS device name (e.g., GET /aux HTTP/1.0).

CVSS2: 5
7%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0615

Directory traversal vulnerability in Faust Informatics Freestyle Chat server prior to 4.1 SR3 allows a remote attacker to read arbitrary files via a specially crafted URL which includes variations of a '..' (dot dot) attack such as '...' or '....'.

CVSS2: 5
4%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0614

Carello E-Commerce 1.2.1 and earlier allows a remote attacker to gain additional privileges and execute arbitrary commands via a specially constructed URL.

CVSS2: 7.5
3%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0613

Omnicron Technologies OmniHTTPD Professional 2.08 and earlier allows a remote attacker to create a denial of service via a long POST URL request.

CVSS2: 5
2%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0612

McAfee Remote Desktop 3.0 and earlier allows remote attackers to cause a denial of service (crash) via a large number of packets to port 5045.

CVSS2: 5
3%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0611

Becky! 2.00.05 and earlier can allow a remote attacker to gain additional privileges via a buffer overflow attack on long messages without newline characters.

CVSS2: 7.5
2%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0610

kfm as included with KDE 1.x can allow a local attacker to gain additional privileges via a symlink attack in the kfm cache directory in /tmp.

CVSS2: 4.6
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0609

Format string vulnerability in Infodrom cfingerd 1.4.3 and earlier allows a remote attacker to gain additional privileges via a malformed ident reply that is passed to the syslog function.

CVSS3: 9.8
18%
Средний
около 25 лет назад
nvd логотип
CVE-2001-0608

HP architected interface facility (AIF) as includes with MPE/iX 5.5 through 6.5 running on a HP3000 allows an attacker to gain additional privileges and gain access to databases via the AIF - AIFCHANGELOGON program.

CVSS2: 7.5
4%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0607

asecure as included with HP-UX 10.01 through 11.00 can allow a local attacker to create a denial of service and gain additional privileges via unsafe permissions on the asecure program, a different vulnerability than CVE-2000-0083.

CVSS2: 4.6
0%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0606

Vulnerability in iPlanet Web Server 4.X in HP-UX 11.04 (VVOS) with VirtualVault A.04.00 allows a remote attacker to create a denial of service via the HTTPS service.

CVSS2: 5
2%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0605

Headlight Software MyGetright prior to 1.0b allows a remote attacker to upload and/or overwrite arbitrary files via a malicious .dld (skins-data) file which contains long strings of random data.

CVSS2: 7.5
1%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0604

Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via URL requests (>8Kb) containing a large number of '/' characters.

CVSS2: 5
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0603

Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via repeatedly sending large (> 10Kb) amounts of data to the DIIOP - CORBA service on TCP port 63148.

CVSS2: 5
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0602

Lotus Domino R5 prior to 5.0.7 allows a remote attacker to create a denial of service via repeated (>400) URL requests for DOS devices.

CVSS2: 5
2%
Низкий
около 25 лет назад

Уязвимостей на страницу