Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 395 079

Количество 395 079

nvd логотип

CVE-2001-0505

почти 25 лет назад

Multiple memory leaks in Microsoft Services for Unix 2.0 allow remote attackers to cause a denial of service (memory exhaustion) via a large number of malformed requests to (1) the Telnet service, or (2) the NFS service.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0504

около 25 лет назад

Vulnerability in authentication process for SMTP service in Microsoft Windows 2000 allows remote attackers to use incorrect credentials to gain privileges and conduct activities such as mail relaying.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2001-0503

около 25 лет назад

Microsoft NetMeeting 3.01 with Remote Desktop Sharing enabled allows remote attackers to cause a denial of service via a malformed string to the NetMeeting service port, aka a variant of the "NetMeeting Desktop Sharing" vulnerability.

CVSS2: 5
EPSS: Средний
nvd логотип

CVE-2001-0502

около 25 лет назад

Running Windows 2000 LDAP Server over SSL, a function does not properly check the permissions of a user request when the directory principal is a domain user and the data attribute is the domain password, which allows local users to modify the login password of other users.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0501

около 25 лет назад

Microsoft Word 2002 and earlier allows attackers to automatically execute macros without warning the user by embedding the macros in a manner that escapes detection by the security scanner.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0500

около 25 лет назад

Buffer overflow in ISAPI extension (idq.dll) in Index Server 2.0 and Indexing Service 2000 in IIS 6.0 beta and earlier allows remote attackers to execute arbitrary commands via a long argument to Internet Data Administration (.ida) and Internet Data Query (.idq) files such as default.ida, as commonly exploited by Code Red.

CVSS2: 10
EPSS: Критический
nvd логотип

CVE-2001-0499

около 25 лет назад

Buffer overflow in Transparent Network Substrate (TNS) Listener in Oracle 8i 8.1.7 and earlier allows remote attackers to gain privileges via a long argument to the commands (1) STATUS, (2) PING, (3) SERVICES, (4) TRC_FILE, (5) SAVE_CONFIG, or (6) RELOAD.

CVSS2: 10
EPSS: Высокий
nvd логотип

CVE-2001-0498

около 25 лет назад

Transparent Network Substrate (TNS) over Net8 (SQLNet) in Oracle 8i 8.1.7 and earlier allows remote attackers to cause a denial of service via a malformed SQLNet connection request with a large offset in the header extension.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0497

около 25 лет назад

dnskeygen in BIND 8.2.4 and earlier, and dnssec-keygen in BIND 9.1.2 and earlier, set insecure permissions for a HMAC-MD5 shared secret key file used for DNS Transactional Signatures (TSIG), which allows attackers to obtain the keys and perform dynamic DNS updates.

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2001-0496

около 25 лет назад

kdesu in kdelibs package creates world readable temporary files containing authentication info, which can allow local users to gain privileges.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0495

около 25 лет назад

Directory traversal in DataWizard WebXQ server 1.204 allows remote attackers to view files outside of the web root via a .. (dot dot) attack.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0494

около 25 лет назад

Buffer overflow in IPSwitch IMail SMTP server 6.06 and possibly prior versions allows remote attackers to execute arbitrary code via a long From: header.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0493

около 25 лет назад

Small HTTP server 2.03 allows remote attackers to cause a denial of service via a URL that contains an MS-DOS device name such as aux.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0492

около 25 лет назад

Netcruiser Web server version 0.1.2.8 and earlier allows remote attackers to determine the physical path of the server via a URL containing (1) con, (2) com2, or (3) com3.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0491

около 25 лет назад

Directory traversal vulnerability in RaidenFTPD Server 2.1 before build 952 allows attackers to access files outside the ftp root via dot dot attacks, such as (1) .... in CWD, (2) .. in NLST, or (3) ... in NLST.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0490

около 25 лет назад

Buffer overflow in WINAMP 2.6x and 2.7x allows attackers to execute arbitrary code via a long string in an AIP file.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0489

около 25 лет назад

Format string vulnerability in gftp prior to 2.0.8 allows remote malicious FTP servers to execute arbitrary commands.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0488

около 25 лет назад

pcltotiff in HP-UX 10.x has unnecessary set group id permissions, which allows local users to cause a denial of service.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0487

около 25 лет назад

AIX SNMP server snmpd allows remote attackers to cause a denial of service via a RST during the TCP connection.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0486

около 25 лет назад

Remote attackers can cause a denial of service in Novell BorderManager 3.6 and earlier by sending TCP SYN flood to port 353.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-0505

Multiple memory leaks in Microsoft Services for Unix 2.0 allow remote attackers to cause a denial of service (memory exhaustion) via a large number of malformed requests to (1) the Telnet service, or (2) the NFS service.

CVSS2: 5
33%
Средний
почти 25 лет назад
nvd логотип
CVE-2001-0504

Vulnerability in authentication process for SMTP service in Microsoft Windows 2000 allows remote attackers to use incorrect credentials to gain privileges and conduct activities such as mail relaying.

CVSS2: 7.5
21%
Средний
около 25 лет назад
nvd логотип
CVE-2001-0503

Microsoft NetMeeting 3.01 with Remote Desktop Sharing enabled allows remote attackers to cause a denial of service via a malformed string to the NetMeeting service port, aka a variant of the "NetMeeting Desktop Sharing" vulnerability.

CVSS2: 5
17%
Средний
около 25 лет назад
nvd логотип
CVE-2001-0502

Running Windows 2000 LDAP Server over SSL, a function does not properly check the permissions of a user request when the directory principal is a domain user and the data attribute is the domain password, which allows local users to modify the login password of other users.

CVSS2: 4.6
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0501

Microsoft Word 2002 and earlier allows attackers to automatically execute macros without warning the user by embedding the macros in a manner that escapes detection by the security scanner.

CVSS2: 4.6
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0500

Buffer overflow in ISAPI extension (idq.dll) in Index Server 2.0 and Indexing Service 2000 in IIS 6.0 beta and earlier allows remote attackers to execute arbitrary commands via a long argument to Internet Data Administration (.ida) and Internet Data Query (.idq) files such as default.ida, as commonly exploited by Code Red.

CVSS2: 10
97%
Критический
около 25 лет назад
nvd логотип
CVE-2001-0499

Buffer overflow in Transparent Network Substrate (TNS) Listener in Oracle 8i 8.1.7 and earlier allows remote attackers to gain privileges via a long argument to the commands (1) STATUS, (2) PING, (3) SERVICES, (4) TRC_FILE, (5) SAVE_CONFIG, or (6) RELOAD.

CVSS2: 10
85%
Высокий
около 25 лет назад
nvd логотип
CVE-2001-0498

Transparent Network Substrate (TNS) over Net8 (SQLNet) in Oracle 8i 8.1.7 and earlier allows remote attackers to cause a denial of service via a malformed SQLNet connection request with a large offset in the header extension.

CVSS2: 5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0497

dnskeygen in BIND 8.2.4 and earlier, and dnssec-keygen in BIND 9.1.2 and earlier, set insecure permissions for a HMAC-MD5 shared secret key file used for DNS Transactional Signatures (TSIG), which allows attackers to obtain the keys and perform dynamic DNS updates.

CVSS3: 7.8
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0496

kdesu in kdelibs package creates world readable temporary files containing authentication info, which can allow local users to gain privileges.

CVSS2: 4.6
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0495

Directory traversal in DataWizard WebXQ server 1.204 allows remote attackers to view files outside of the web root via a .. (dot dot) attack.

CVSS2: 5
9%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0494

Buffer overflow in IPSwitch IMail SMTP server 6.06 and possibly prior versions allows remote attackers to execute arbitrary code via a long From: header.

CVSS2: 7.5
4%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0493

Small HTTP server 2.03 allows remote attackers to cause a denial of service via a URL that contains an MS-DOS device name such as aux.

CVSS2: 5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0492

Netcruiser Web server version 0.1.2.8 and earlier allows remote attackers to determine the physical path of the server via a URL containing (1) con, (2) com2, or (3) com3.

CVSS2: 5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0491

Directory traversal vulnerability in RaidenFTPD Server 2.1 before build 952 allows attackers to access files outside the ftp root via dot dot attacks, such as (1) .... in CWD, (2) .. in NLST, or (3) ... in NLST.

CVSS2: 5
6%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0490

Buffer overflow in WINAMP 2.6x and 2.7x allows attackers to execute arbitrary code via a long string in an AIP file.

CVSS2: 7.5
4%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0489

Format string vulnerability in gftp prior to 2.0.8 allows remote malicious FTP servers to execute arbitrary commands.

CVSS2: 7.5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0488

pcltotiff in HP-UX 10.x has unnecessary set group id permissions, which allows local users to cause a denial of service.

CVSS2: 2.1
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0487

AIX SNMP server snmpd allows remote attackers to cause a denial of service via a RST during the TCP connection.

CVSS2: 5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0486

Remote attackers can cause a denial of service in Novell BorderManager 3.6 and earlier by sending TCP SYN flood to port 353.

CVSS2: 5
5%
Низкий
около 25 лет назад

Уязвимостей на страницу