Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 372 328

Количество 372 328

nvd логотип

CVE-2001-0561

почти 25 лет назад

Directory traversal vulnerability in Drummond Miles A1Stats prior to 1.6 allows a remote attacker to read arbitrary files via a '..' (dot dot) attack in (1) a1disp2.cgi, (2) a1disp3.cgi, or (3) a1disp4.cgi.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2001-0560

почти 25 лет назад

Buffer overflow in Vixie cron 3.0.1-56 and earlier could allow a local attacker to gain additional privileges via a long username (> 20 characters).

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0559

почти 25 лет назад

crontab in Vixie cron 3.0.1 and earlier does not properly drop privileges after the failed parsing of a modification operation, which could allow a local attacker to gain additional privileges when an editor is called to correct the error.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0558

почти 25 лет назад

T. Hauck Jana Webserver 2.01 beta 1 and earlier allows a remote attacker to create a denial of service via a URL request which includes a MS-DOS device name (i.e. GET /aux HTTP/1.0).

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0557

почти 25 лет назад

T. Hauck Jana Webserver 1.46 and earlier allows a remote attacker to view arbitrary files via a '..' (dot dot) attack which is URL encoded (%2e%2e).

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0556

почти 25 лет назад

The Nirvana Editor (NEdit) 5.1.1 and earlier allows a local attacker to overwrite other users' files via a symlink attack on (1) backup files or (2) temporary files used when nedit prints a file or portions of a file.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0555

почти 25 лет назад

ScreamingMedia SITEWare versions 2.5 through 3.1 allows a remote attacker to read world-readable files via a .. (dot dot) attack through (1) the SITEWare Editor's Desktop or (2) the template parameter in SWEditServlet.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2001-0554

почти 25 лет назад

Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You There), which is not properly handled by the telrcv function.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2001-0553

почти 25 лет назад

SSH Secure Shell 3.0.0 on Unix systems does not properly perform password authentication to the sshd2 daemon, which allows local users to gain access to accounts with short password fields, such as locked accounts that use "NP" in the password field.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0552

почти 25 лет назад

ovactiond in HP OpenView Network Node Manager (NNM) 6.1 and Tivoli Netview 5.x and 6.x allows remote attackers to execute arbitrary commands via shell metacharacters in a certain SNMP trap message.

CVSS2: 10
EPSS: Средний
nvd логотип

CVE-2001-0551

около 25 лет назад

Buffer overflow in CDE Print Viewer (dtprintinfo) allows local users to execute arbitrary code by copying text from the clipboard into the Help window.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0550

больше 24 лет назад

wu-ftpd 2.6.1 allows remote attackers to execute arbitrary commands via a "~{" argument to commands such as CWD, which is not properly handled by the glob function (ftpglob).

CVSS2: 7.5
EPSS: Высокий
nvd логотип

CVE-2001-0549

почти 25 лет назад

Symantec LiveUpdate 1.5 stores proxy passwords in cleartext in a registry key, which could allow local users to obtain the passwords.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0548

почти 25 лет назад

Buffer overflow in dtmail in Solaris 2.6 and 7 allows local users to gain privileges via the MAIL environment variable.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0547

почти 25 лет назад

Memory leak in the proxy service in Microsoft Internet Security and Acceleration (ISA) Server 2000 allows local attackers to cause a denial of service (resource exhaustion).

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0546

почти 25 лет назад

Memory leak in H.323 Gatekeeper Service in Microsoft Internet Security and Acceleration (ISA) Server 2000 allows remote attackers to cause a denial of service (resource exhaustion) via a large amount of malformed H.323 data.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0545

почти 25 лет назад

IIS 4.0 with URL redirection enabled allows remote attackers to cause a denial of service (crash) via a malformed request that specifies a length that is different than the actual length.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0544

почти 25 лет назад

IIS 5.0 allows local users to cause a denial of service (hang) via by installing content that produces a certain invalid MIME Content-Type header, which corrupts the File Type table.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0543

почти 25 лет назад

Memory leak in NNTP service in Windows NT 4.0 and Windows 2000 allows remote attackers to cause a denial of service (memory exhaustion) via a large number of malformed posts.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0542

больше 24 лет назад

Buffer overflows in Microsoft SQL Server 7.0 and 2000 allow attackers with access to SQL Server to execute arbitrary code through the functions (1) raiserror, (2) formatmessage, or (3) xp_sprintf. NOTE: the C runtime format string vulnerability reported in MS01-060 is identified by CVE-2001-0879.

CVSS2: 7.5
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-0561

Directory traversal vulnerability in Drummond Miles A1Stats prior to 1.6 allows a remote attacker to read arbitrary files via a '..' (dot dot) attack in (1) a1disp2.cgi, (2) a1disp3.cgi, or (3) a1disp4.cgi.

CVSS2: 7.5
13%
Средний
почти 25 лет назад
nvd логотип
CVE-2001-0560

Buffer overflow in Vixie cron 3.0.1-56 and earlier could allow a local attacker to gain additional privileges via a long username (> 20 characters).

CVSS2: 4.6
1%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0559

crontab in Vixie cron 3.0.1 and earlier does not properly drop privileges after the failed parsing of a modification operation, which could allow a local attacker to gain additional privileges when an editor is called to correct the error.

CVSS2: 7.2
1%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0558

T. Hauck Jana Webserver 2.01 beta 1 and earlier allows a remote attacker to create a denial of service via a URL request which includes a MS-DOS device name (i.e. GET /aux HTTP/1.0).

CVSS2: 5
7%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0557

T. Hauck Jana Webserver 1.46 and earlier allows a remote attacker to view arbitrary files via a '..' (dot dot) attack which is URL encoded (%2e%2e).

CVSS2: 5
11%
Средний
почти 25 лет назад
nvd логотип
CVE-2001-0556

The Nirvana Editor (NEdit) 5.1.1 and earlier allows a local attacker to overwrite other users' files via a symlink attack on (1) backup files or (2) temporary files used when nedit prints a file or portions of a file.

CVSS2: 7.2
1%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0555

ScreamingMedia SITEWare versions 2.5 through 3.1 allows a remote attacker to read world-readable files via a .. (dot dot) attack through (1) the SITEWare Editor's Desktop or (2) the template parameter in SWEditServlet.

CVSS2: 10
15%
Средний
почти 25 лет назад
nvd логотип
CVE-2001-0554

Buffer overflow in BSD-based telnetd telnet daemon on various operating systems allows remote attackers to execute arbitrary commands via a set of options including AYT (Are You There), which is not properly handled by the telrcv function.

CVSS2: 10
38%
Средний
почти 25 лет назад
nvd логотип
CVE-2001-0553

SSH Secure Shell 3.0.0 on Unix systems does not properly perform password authentication to the sshd2 daemon, which allows local users to gain access to accounts with short password fields, such as locked accounts that use "NP" in the password field.

CVSS2: 7.2
1%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0552

ovactiond in HP OpenView Network Node Manager (NNM) 6.1 and Tivoli Netview 5.x and 6.x allows remote attackers to execute arbitrary commands via shell metacharacters in a certain SNMP trap message.

CVSS2: 10
26%
Средний
почти 25 лет назад
nvd логотип
CVE-2001-0551

Buffer overflow in CDE Print Viewer (dtprintinfo) allows local users to execute arbitrary code by copying text from the clipboard into the Help window.

CVSS2: 7.2
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0550

wu-ftpd 2.6.1 allows remote attackers to execute arbitrary commands via a "~{" argument to commands such as CWD, which is not properly handled by the glob function (ftpglob).

CVSS2: 7.5
75%
Высокий
больше 24 лет назад
nvd логотип
CVE-2001-0549

Symantec LiveUpdate 1.5 stores proxy passwords in cleartext in a registry key, which could allow local users to obtain the passwords.

CVSS2: 4.6
0%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0548

Buffer overflow in dtmail in Solaris 2.6 and 7 allows local users to gain privileges via the MAIL environment variable.

CVSS2: 4.6
1%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0547

Memory leak in the proxy service in Microsoft Internet Security and Acceleration (ISA) Server 2000 allows local attackers to cause a denial of service (resource exhaustion).

CVSS2: 2.1
2%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0546

Memory leak in H.323 Gatekeeper Service in Microsoft Internet Security and Acceleration (ISA) Server 2000 allows remote attackers to cause a denial of service (resource exhaustion) via a large amount of malformed H.323 data.

CVSS2: 5
17%
Средний
почти 25 лет назад
nvd логотип
CVE-2001-0545

IIS 4.0 with URL redirection enabled allows remote attackers to cause a denial of service (crash) via a malformed request that specifies a length that is different than the actual length.

CVSS2: 5
18%
Средний
почти 25 лет назад
nvd логотип
CVE-2001-0544

IIS 5.0 allows local users to cause a denial of service (hang) via by installing content that produces a certain invalid MIME Content-Type header, which corrupts the File Type table.

CVSS2: 2.1
2%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0543

Memory leak in NNTP service in Windows NT 4.0 and Windows 2000 allows remote attackers to cause a denial of service (memory exhaustion) via a large number of malformed posts.

CVSS2: 5
19%
Средний
почти 25 лет назад
nvd логотип
CVE-2001-0542

Buffer overflows in Microsoft SQL Server 7.0 and 2000 allow attackers with access to SQL Server to execute arbitrary code through the functions (1) raiserror, (2) formatmessage, or (3) xp_sprintf. NOTE: the C runtime format string vulnerability reported in MS01-060 is identified by CVE-2001-0879.

CVSS2: 7.5
14%
Средний
больше 24 лет назад

Уязвимостей на страницу