Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 390 627

Количество 390 627

nvd логотип

CVE-2001-0327

около 25 лет назад

iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to retrieve sensitive data from memory allocation pools, or cause a denial of service, via a URL-encoded Host: header in the HTTP request, which reveals memory in the Location: header that is returned by the server.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0326

больше 25 лет назад

Oracle Java Virtual Machine (JVM ) for Oracle 8.1.7 and Oracle Application Server 9iAS Release 1.0.2.0.1 allows remote attackers to read arbitrary files via the .jsp and .sqljsp file extensions when the server is configured to use the <<ALL FILES>> FilePermission.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0325

больше 25 лет назад

Buffer overflow in QNX RTP 5.60 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large number of arguments to the stat command.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0324

больше 25 лет назад

Windows 98 and Windows 2000 Java clients allow remote attackers to cause a denial of service via a Java applet that opens a large number of UDP sockets, which prevents the host from establishing any additional UDP connections, and possibly causes a crash.

CVSS2: 2.6
EPSS: Средний
nvd логотип

CVE-2001-0323

больше 25 лет назад

The ICMP path MTU (PMTU) discovery feature in various UNIX systems allows remote attackers to cause a denial of service by spoofing "ICMP Fragmentation needed but Don't Fragment (DF) set" packets between two target hosts, which could cause one host to lower its MTU when transmitting to the other host.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2001-0322

больше 25 лет назад

MSHTML.DLL HTML parser in Internet Explorer 4.0, and other versions, allows remote attackers to cause a denial of service (application crash) via a script that creates and deletes an object that is associated with the browser window object.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0321

больше 25 лет назад

opendir.php script in PHP-Nuke allows remote attackers to read arbitrary files by specifying the filename as an argument to the requesturl parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0320

больше 25 лет назад

bb_smilies.php and bbcode_ref.php in PHP-Nuke 4.4 allows remote attackers to read arbitrary files and gain PHP administrator privileges by inserting a null character and .. (dot dot) sequences into a malformed username argument.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2001-0319

больше 25 лет назад

orderdspc.d2w macro in IBM Net.Commerce 3.x allows remote attackers to execute arbitrary SQL queries by inserting them into the order_rn option of the report capability.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0318

больше 25 лет назад

Format string vulnerability in ProFTPD 1.2.0rc2 may allow attackers to execute arbitrary commands by shutting down the FTP server while using a malformed working directory (cwd).

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2001-0317

больше 25 лет назад

Race condition in ptrace in Linux kernel 2.4 and 2.2 allows local users to gain privileges by using ptrace to track and modify a running setuid process.

CVSS2: 3.7
EPSS: Низкий
nvd логотип

CVE-2001-0316

больше 25 лет назад

Linux kernel 2.4 and 2.2 allows local users to read kernel memory and possibly gain privileges via a negative argument to the sysctl call.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0315

больше 25 лет назад

The locking feature in mIRC 5.7 allows local users to bypass the password mechanism by modifying the LockOptions registry key.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0314

больше 25 лет назад

Buffer overflow in www.tol module in America Online (AOL) 5.0 may allow remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long URL in a link.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0313

больше 25 лет назад

Borderware Firewall Server 6.1.2 allows remote attackers to cause a denial of service via a ping to the broadcast address of the public network on which the server is placed, which causes the server to continuously send pings (echo requests) to the network.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0312

больше 25 лет назад

IBM WebSphere plugin for Netscape Enterprise server allows remote attackers to read source code for JSP files via an HTTP request that contains a host header that references a host that is not in WebSphere's host aliases list, which will bypass WebSphere processing.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0311

больше 25 лет назад

Vulnerability in OmniBackII A.03.50 in HP 11.x and earlier allows attackers to gain unauthorized access to an OmniBack client.

CVSS2: 4.6
EPSS: Средний
nvd логотип

CVE-2001-0310

больше 25 лет назад

sort in FreeBSD 4.1.1 and earlier, and possibly other operating systems, uses predictable temporary file names and does not properly handle when the temporary file already exists, which causes sort to crash and possibly impacts security-sensitive scripts.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0309

больше 25 лет назад

inetd in Red Hat 6.2 does not properly close sockets for internal services such as chargen, daytime, echo, etc., which allows remote attackers to cause a denial of service via a series of connections to the internal services.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0308

больше 25 лет назад

UploadServlet in Bajie HTTP JServer 0.78, and possibly other versions before 0.80, allows remote attackers to execute arbitrary commands by calling the servlet to upload a program, then using a ... (modified ..) to access the file that was created for the program.

CVSS2: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-0327

iPlanet Web Server Enterprise Edition 4.1 and earlier allows remote attackers to retrieve sensitive data from memory allocation pools, or cause a denial of service, via a URL-encoded Host: header in the HTTP request, which reveals memory in the Location: header that is returned by the server.

CVSS2: 5
3%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0326

Oracle Java Virtual Machine (JVM ) for Oracle 8.1.7 and Oracle Application Server 9iAS Release 1.0.2.0.1 allows remote attackers to read arbitrary files via the .jsp and .sqljsp file extensions when the server is configured to use the <<ALL FILES>> FilePermission.

CVSS2: 7.5
5%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0325

Buffer overflow in QNX RTP 5.60 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a large number of arguments to the stat command.

CVSS2: 7.5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0324

Windows 98 and Windows 2000 Java clients allow remote attackers to cause a denial of service via a Java applet that opens a large number of UDP sockets, which prevents the host from establishing any additional UDP connections, and possibly causes a crash.

CVSS2: 2.6
14%
Средний
больше 25 лет назад
nvd логотип
CVE-2001-0323

The ICMP path MTU (PMTU) discovery feature in various UNIX systems allows remote attackers to cause a denial of service by spoofing "ICMP Fragmentation needed but Don't Fragment (DF) set" packets between two target hosts, which could cause one host to lower its MTU when transmitting to the other host.

CVSS2: 6.4
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0322

MSHTML.DLL HTML parser in Internet Explorer 4.0, and other versions, allows remote attackers to cause a denial of service (application crash) via a script that creates and deletes an object that is associated with the browser window object.

CVSS2: 5
21%
Средний
больше 25 лет назад
nvd логотип
CVE-2001-0321

opendir.php script in PHP-Nuke allows remote attackers to read arbitrary files by specifying the filename as an argument to the requesturl parameter.

CVSS2: 5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0320

bb_smilies.php and bbcode_ref.php in PHP-Nuke 4.4 allows remote attackers to read arbitrary files and gain PHP administrator privileges by inserting a null character and .. (dot dot) sequences into a malformed username argument.

CVSS2: 10
3%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0319

orderdspc.d2w macro in IBM Net.Commerce 3.x allows remote attackers to execute arbitrary SQL queries by inserting them into the order_rn option of the report capability.

CVSS2: 7.5
7%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0318

Format string vulnerability in ProFTPD 1.2.0rc2 may allow attackers to execute arbitrary commands by shutting down the FTP server while using a malformed working directory (cwd).

CVSS2: 7.5
11%
Средний
больше 25 лет назад
nvd логотип
CVE-2001-0317

Race condition in ptrace in Linux kernel 2.4 and 2.2 allows local users to gain privileges by using ptrace to track and modify a running setuid process.

CVSS2: 3.7
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0316

Linux kernel 2.4 and 2.2 allows local users to read kernel memory and possibly gain privileges via a negative argument to the sysctl call.

CVSS2: 4.6
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0315

The locking feature in mIRC 5.7 allows local users to bypass the password mechanism by modifying the LockOptions registry key.

CVSS2: 7.5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0314

Buffer overflow in www.tol module in America Online (AOL) 5.0 may allow remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long URL in a link.

CVSS2: 7.5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0313

Borderware Firewall Server 6.1.2 allows remote attackers to cause a denial of service via a ping to the broadcast address of the public network on which the server is placed, which causes the server to continuously send pings (echo requests) to the network.

CVSS2: 5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0312

IBM WebSphere plugin for Netscape Enterprise server allows remote attackers to read source code for JSP files via an HTTP request that contains a host header that references a host that is not in WebSphere's host aliases list, which will bypass WebSphere processing.

CVSS2: 5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0311

Vulnerability in OmniBackII A.03.50 in HP 11.x and earlier allows attackers to gain unauthorized access to an OmniBack client.

CVSS2: 4.6
12%
Средний
больше 25 лет назад
nvd логотип
CVE-2001-0310

sort in FreeBSD 4.1.1 and earlier, and possibly other operating systems, uses predictable temporary file names and does not properly handle when the temporary file already exists, which causes sort to crash and possibly impacts security-sensitive scripts.

CVSS2: 2.1
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0309

inetd in Red Hat 6.2 does not properly close sockets for internal services such as chargen, daytime, echo, etc., which allows remote attackers to cause a denial of service via a series of connections to the internal services.

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0308

UploadServlet in Bajie HTTP JServer 0.78, and possibly other versions before 0.80, allows remote attackers to execute arbitrary commands by calling the servlet to upload a program, then using a ... (modified ..) to access the file that was created for the program.

CVSS2: 7.5
4%
Низкий
больше 25 лет назад

Уязвимостей на страницу