Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 372 328

Количество 372 328

nvd логотип

CVE-2001-0517

около 25 лет назад

Oracle listener in Oracle 8i on Solaris allows remote attackers to cause a denial of service via a malformed connection packet with a maximum transport data size that is set to 0.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0516

около 25 лет назад

Oracle listener between Oracle 9i and Oracle 8.0 allows remote attackers to cause a denial of service via a malformed connection packet that contains an incorrect requester_version value that does not match an expected offset to the data.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0515

около 25 лет назад

Oracle Listener in Oracle 7.3 and 8i allows remote attackers to cause a denial of service via a malformed connection packet with a large offset_to_data value.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0514

около 25 лет назад

SNMP service in Atmel 802.11b VNET-B Access Point 1.3 and earlier, as used in Netgear ME102 and Linksys WAP11, accepts arbitrary community strings with requested MIB modifications, which allows remote attackers to obtain sensitive information such as WEP keys, cause a denial of service, or gain access to the network.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0513

около 25 лет назад

Oracle listener process on Windows NT redirects connection requests to another port and creates a separate thread to process the request, which allows remote attackers to cause a denial of service by repeatedly connecting to the Oracle listener but not connecting to the redirected port.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0509

почти 25 лет назад

Vulnerabilities in RPC servers in (1) Microsoft Exchange Server 2000 and earlier, (2) Microsoft SQL Server 2000 and earlier, (3) Windows NT 4.0, and (4) Windows 2000 allow remote attackers to cause a denial of service via malformed inputs.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0508

почти 25 лет назад

Vulnerability in IIS 5.0 allows remote attackers to cause a denial of service (restart) via a long, invalid WebDAV request.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0507

почти 25 лет назад

IIS 5.0 uses relative paths to find system files that will run in-process, which allows local users to gain privileges via a Trojan horse file, aka the "System file listing privilege elevation" vulnerability.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0506

почти 25 лет назад

Buffer overflow in ssinc.dll in IIS 5.0 and 4.0 allows local users to gain system privileges via a Server-Side Includes (SSI) directive for a long filename, which triggers the overflow when the directory name is added, aka the "SSI privilege elevation" vulnerability.

CVSS2: 7.2
EPSS: Средний
nvd логотип

CVE-2001-0505

почти 25 лет назад

Multiple memory leaks in Microsoft Services for Unix 2.0 allow remote attackers to cause a denial of service (memory exhaustion) via a large number of malformed requests to (1) the Telnet service, or (2) the NFS service.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0504

почти 25 лет назад

Vulnerability in authentication process for SMTP service in Microsoft Windows 2000 allows remote attackers to use incorrect credentials to gain privileges and conduct activities such as mail relaying.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2001-0503

около 25 лет назад

Microsoft NetMeeting 3.01 with Remote Desktop Sharing enabled allows remote attackers to cause a denial of service via a malformed string to the NetMeeting service port, aka a variant of the "NetMeeting Desktop Sharing" vulnerability.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0502

около 25 лет назад

Running Windows 2000 LDAP Server over SSL, a function does not properly check the permissions of a user request when the directory principal is a domain user and the data attribute is the domain password, which allows local users to modify the login password of other users.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0501

около 25 лет назад

Microsoft Word 2002 and earlier allows attackers to automatically execute macros without warning the user by embedding the macros in a manner that escapes detection by the security scanner.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0500

около 25 лет назад

Buffer overflow in ISAPI extension (idq.dll) in Index Server 2.0 and Indexing Service 2000 in IIS 6.0 beta and earlier allows remote attackers to execute arbitrary commands via a long argument to Internet Data Administration (.ida) and Internet Data Query (.idq) files such as default.ida, as commonly exploited by Code Red.

CVSS2: 10
EPSS: Критический
nvd логотип

CVE-2001-0499

около 25 лет назад

Buffer overflow in Transparent Network Substrate (TNS) Listener in Oracle 8i 8.1.7 and earlier allows remote attackers to gain privileges via a long argument to the commands (1) STATUS, (2) PING, (3) SERVICES, (4) TRC_FILE, (5) SAVE_CONFIG, or (6) RELOAD.

CVSS2: 10
EPSS: Высокий
nvd логотип

CVE-2001-0498

около 25 лет назад

Transparent Network Substrate (TNS) over Net8 (SQLNet) in Oracle 8i 8.1.7 and earlier allows remote attackers to cause a denial of service via a malformed SQLNet connection request with a large offset in the header extension.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0497

около 25 лет назад

dnskeygen in BIND 8.2.4 and earlier, and dnssec-keygen in BIND 9.1.2 and earlier, set insecure permissions for a HMAC-MD5 shared secret key file used for DNS Transactional Signatures (TSIG), which allows attackers to obtain the keys and perform dynamic DNS updates.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2001-0496

около 25 лет назад

kdesu in kdelibs package creates world readable temporary files containing authentication info, which can allow local users to gain privileges.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0495

около 25 лет назад

Directory traversal in DataWizard WebXQ server 1.204 allows remote attackers to view files outside of the web root via a .. (dot dot) attack.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-0517

Oracle listener in Oracle 8i on Solaris allows remote attackers to cause a denial of service via a malformed connection packet with a maximum transport data size that is set to 0.

CVSS2: 5
3%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0516

Oracle listener between Oracle 9i and Oracle 8.0 allows remote attackers to cause a denial of service via a malformed connection packet that contains an incorrect requester_version value that does not match an expected offset to the data.

CVSS2: 5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0515

Oracle Listener in Oracle 7.3 and 8i allows remote attackers to cause a denial of service via a malformed connection packet with a large offset_to_data value.

CVSS2: 5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0514

SNMP service in Atmel 802.11b VNET-B Access Point 1.3 and earlier, as used in Netgear ME102 and Linksys WAP11, accepts arbitrary community strings with requested MIB modifications, which allows remote attackers to obtain sensitive information such as WEP keys, cause a denial of service, or gain access to the network.

CVSS2: 7.5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0513

Oracle listener process on Windows NT redirects connection requests to another port and creates a separate thread to process the request, which allows remote attackers to cause a denial of service by repeatedly connecting to the Oracle listener but not connecting to the redirected port.

CVSS2: 5
3%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0509

Vulnerabilities in RPC servers in (1) Microsoft Exchange Server 2000 and earlier, (2) Microsoft SQL Server 2000 and earlier, (3) Windows NT 4.0, and (4) Windows 2000 allow remote attackers to cause a denial of service via malformed inputs.

CVSS2: 5
17%
Средний
почти 25 лет назад
nvd логотип
CVE-2001-0508

Vulnerability in IIS 5.0 allows remote attackers to cause a denial of service (restart) via a long, invalid WebDAV request.

CVSS2: 5
25%
Средний
почти 25 лет назад
nvd логотип
CVE-2001-0507

IIS 5.0 uses relative paths to find system files that will run in-process, which allows local users to gain privileges via a Trojan horse file, aka the "System file listing privilege elevation" vulnerability.

CVSS2: 7.2
4%
Низкий
почти 25 лет назад
nvd логотип
CVE-2001-0506

Buffer overflow in ssinc.dll in IIS 5.0 and 4.0 allows local users to gain system privileges via a Server-Side Includes (SSI) directive for a long filename, which triggers the overflow when the directory name is added, aka the "SSI privilege elevation" vulnerability.

CVSS2: 7.2
30%
Средний
почти 25 лет назад
nvd логотип
CVE-2001-0505

Multiple memory leaks in Microsoft Services for Unix 2.0 allow remote attackers to cause a denial of service (memory exhaustion) via a large number of malformed requests to (1) the Telnet service, or (2) the NFS service.

CVSS2: 5
33%
Средний
почти 25 лет назад
nvd логотип
CVE-2001-0504

Vulnerability in authentication process for SMTP service in Microsoft Windows 2000 allows remote attackers to use incorrect credentials to gain privileges and conduct activities such as mail relaying.

CVSS2: 7.5
21%
Средний
почти 25 лет назад
nvd логотип
CVE-2001-0503

Microsoft NetMeeting 3.01 with Remote Desktop Sharing enabled allows remote attackers to cause a denial of service via a malformed string to the NetMeeting service port, aka a variant of the "NetMeeting Desktop Sharing" vulnerability.

CVSS2: 5
17%
Средний
около 25 лет назад
nvd логотип
CVE-2001-0502

Running Windows 2000 LDAP Server over SSL, a function does not properly check the permissions of a user request when the directory principal is a domain user and the data attribute is the domain password, which allows local users to modify the login password of other users.

CVSS2: 4.6
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0501

Microsoft Word 2002 and earlier allows attackers to automatically execute macros without warning the user by embedding the macros in a manner that escapes detection by the security scanner.

CVSS2: 4.6
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0500

Buffer overflow in ISAPI extension (idq.dll) in Index Server 2.0 and Indexing Service 2000 in IIS 6.0 beta and earlier allows remote attackers to execute arbitrary commands via a long argument to Internet Data Administration (.ida) and Internet Data Query (.idq) files such as default.ida, as commonly exploited by Code Red.

CVSS2: 10
97%
Критический
около 25 лет назад
nvd логотип
CVE-2001-0499

Buffer overflow in Transparent Network Substrate (TNS) Listener in Oracle 8i 8.1.7 and earlier allows remote attackers to gain privileges via a long argument to the commands (1) STATUS, (2) PING, (3) SERVICES, (4) TRC_FILE, (5) SAVE_CONFIG, or (6) RELOAD.

CVSS2: 10
85%
Высокий
около 25 лет назад
nvd логотип
CVE-2001-0498

Transparent Network Substrate (TNS) over Net8 (SQLNet) in Oracle 8i 8.1.7 and earlier allows remote attackers to cause a denial of service via a malformed SQLNet connection request with a large offset in the header extension.

CVSS2: 5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0497

dnskeygen in BIND 8.2.4 and earlier, and dnssec-keygen in BIND 9.1.2 and earlier, set insecure permissions for a HMAC-MD5 shared secret key file used for DNS Transactional Signatures (TSIG), which allows attackers to obtain the keys and perform dynamic DNS updates.

CVSS3: 7.8
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0496

kdesu in kdelibs package creates world readable temporary files containing authentication info, which can allow local users to gain privileges.

CVSS2: 4.6
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0495

Directory traversal in DataWizard WebXQ server 1.204 allows remote attackers to view files outside of the web root via a .. (dot dot) attack.

CVSS2: 5
9%
Низкий
около 25 лет назад

Уязвимостей на страницу