Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 372 328

Количество 372 328

nvd логотип

CVE-2001-0308

около 25 лет назад

UploadServlet in Bajie HTTP JServer 0.78, and possibly other versions before 0.80, allows remote attackers to execute arbitrary commands by calling the servlet to upload a program, then using a ... (modified ..) to access the file that was created for the program.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0307

около 25 лет назад

Bajie HTTP JServer 0.78, and other versions before 0.80, allows remote attackers to execute arbitrary commands via shell metacharacters in an HTTP request for a CGI program that does not exist.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0306

около 25 лет назад

Directory traversal vulnerability in ITAfrica WEBactive HTTP Server 1.00 allows remote attackers to read arbitrary files via a .. (dot dot) in a URL.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0305

около 25 лет назад

Directory traversal vulnerability in store.cgi in Thinking Arts ES.One package allows remote attackers to read arbitrary files via a .. (dot dot) in the StartID parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0304

около 25 лет назад

Directory traversal vulnerability in Caucho Resin 1.2.2 allows remote attackers to read arbitrary files via a "\.." (dot dot) in a URL request.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0303

около 25 лет назад

tstisapi.dll in Pi3Web 1.0.1 web server allows remote attackers to determine the physical path of the server via a URL that requests a non-existent file.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0302

около 25 лет назад

Buffer overflow in tstisapi.dll in Pi3Web 1.0.1 web server allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long URL.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0301

около 25 лет назад

Buffer overflow in Analog before 4.16 allows remote attackers to execute arbitrary commands by using the ALIAS command to construct large strings.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2001-0300

около 25 лет назад

oidldapd 2.1.1.1 in Oracle 8.1.7 records log files in a directory (ldaplog) that has world-writable permissions, which may allow local users to delete logs and/or overwrite other files via a symlink attack.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0299

около 25 лет назад

Buffer overflow in Voyager web administration server for Nokia IP440 allows local users to cause a denial of service, and possibly execute arbitrary commands, via a long URL.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0298

около 25 лет назад

Buffer overflow in WebReflex 1.55 HTTPd allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long HTTP GET request.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0297

около 25 лет назад

Directory traversal vulnerability in Simple Server HTTPd 1.0 (originally Free Java Server) allows remote attackers to read arbitrary files via a .. (dot dot) in the URL.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0296

около 25 лет назад

Buffer overflow in WFTPD Pro 3.00 allows remote attackers to execute arbitrary commands via a long CWD command.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2001-0295

около 25 лет назад

Directory traversal vulnerability in War FTP 1.67.04 allows remote attackers to list directory contents and possibly read files via a "dir *./../.." command.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0294

около 25 лет назад

Directory traversal vulnerability in TYPSoft FTP Server 0.85 allows remote attackers to read arbitrary files via (1) a .. (dot dot) in a GET command, or (2) a ... in a CWD command.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0293

около 25 лет назад

Directory traversal vulnerability in FtpXQ FTP server 2.0.93 allows remote attackers to read arbitrary files via a .. (dot dot) in the GET command.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0292

около 25 лет назад

PHP-Nuke 4.4.1a allows remote attackers to modify a user's email address and obtain the password by guessing the user id (UID) and calling user.php with the saveuser operator.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0291

около 25 лет назад

Buffer overflow in post-query sample CGI program allows remote attackers to execute arbitrary commands via an HTTP POST request that contains at least 10001 parameters.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2001-0290

около 25 лет назад

Vulnerability in Mailman 2.0.1 and earlier allows list administrators to obtain user passwords.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0289

около 25 лет назад

Joe text editor 2.8 searches the current working directory (CWD) for the .joerc configuration file, which could allow local users to gain privileges of other users by placing a Trojan Horse .joerc file into a directory, then waiting for users to execute joe from that directory.

CVSS2: 4.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-0308

UploadServlet in Bajie HTTP JServer 0.78, and possibly other versions before 0.80, allows remote attackers to execute arbitrary commands by calling the servlet to upload a program, then using a ... (modified ..) to access the file that was created for the program.

CVSS2: 7.5
4%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0307

Bajie HTTP JServer 0.78, and other versions before 0.80, allows remote attackers to execute arbitrary commands via shell metacharacters in an HTTP request for a CGI program that does not exist.

CVSS2: 7.5
8%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0306

Directory traversal vulnerability in ITAfrica WEBactive HTTP Server 1.00 allows remote attackers to read arbitrary files via a .. (dot dot) in a URL.

CVSS2: 5
3%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0305

Directory traversal vulnerability in store.cgi in Thinking Arts ES.One package allows remote attackers to read arbitrary files via a .. (dot dot) in the StartID parameter.

CVSS2: 5
6%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0304

Directory traversal vulnerability in Caucho Resin 1.2.2 allows remote attackers to read arbitrary files via a "\.." (dot dot) in a URL request.

CVSS2: 5
3%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0303

tstisapi.dll in Pi3Web 1.0.1 web server allows remote attackers to determine the physical path of the server via a URL that requests a non-existent file.

CVSS2: 5
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0302

Buffer overflow in tstisapi.dll in Pi3Web 1.0.1 web server allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long URL.

CVSS2: 5
7%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0301

Buffer overflow in Analog before 4.16 allows remote attackers to execute arbitrary commands by using the ALIAS command to construct large strings.

CVSS2: 10
4%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0300

oidldapd 2.1.1.1 in Oracle 8.1.7 records log files in a directory (ldaplog) that has world-writable permissions, which may allow local users to delete logs and/or overwrite other files via a symlink attack.

CVSS2: 2.1
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0299

Buffer overflow in Voyager web administration server for Nokia IP440 allows local users to cause a denial of service, and possibly execute arbitrary commands, via a long URL.

CVSS2: 7.5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0298

Buffer overflow in WebReflex 1.55 HTTPd allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long HTTP GET request.

CVSS2: 5
7%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0297

Directory traversal vulnerability in Simple Server HTTPd 1.0 (originally Free Java Server) allows remote attackers to read arbitrary files via a .. (dot dot) in the URL.

CVSS2: 5
3%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0296

Buffer overflow in WFTPD Pro 3.00 allows remote attackers to execute arbitrary commands via a long CWD command.

CVSS2: 10
5%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0295

Directory traversal vulnerability in War FTP 1.67.04 allows remote attackers to list directory contents and possibly read files via a "dir *./../.." command.

CVSS2: 5
8%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0294

Directory traversal vulnerability in TYPSoft FTP Server 0.85 allows remote attackers to read arbitrary files via (1) a .. (dot dot) in a GET command, or (2) a ... in a CWD command.

CVSS2: 5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0293

Directory traversal vulnerability in FtpXQ FTP server 2.0.93 allows remote attackers to read arbitrary files via a .. (dot dot) in the GET command.

CVSS2: 5
6%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0292

PHP-Nuke 4.4.1a allows remote attackers to modify a user's email address and obtain the password by guessing the user id (UID) and calling user.php with the saveuser operator.

CVSS2: 7.5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0291

Buffer overflow in post-query sample CGI program allows remote attackers to execute arbitrary commands via an HTTP POST request that contains at least 10001 parameters.

CVSS2: 10
5%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0290

Vulnerability in Mailman 2.0.1 and earlier allows list administrators to obtain user passwords.

CVSS2: 4.6
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0289

Joe text editor 2.8 searches the current working directory (CWD) for the .joerc configuration file, which could allow local users to gain privileges of other users by placing a Trojan Horse .joerc file into a directory, then waiting for users to execute joe from that directory.

CVSS2: 4.6
1%
Низкий
около 25 лет назад

Уязвимостей на страницу