Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 395 079

Количество 395 079

nvd логотип

CVE-2001-0465

больше 25 лет назад

TurboTax saves passwords in a temporary file when a user imports investment tax information from a financial institution, which could allow local users to obtain sensitive information.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0464

около 25 лет назад

Buffer overflow in websync.exe in Cyberscheduler allows remote attackers to execute arbitrary commands via a long tzs (timezone) parameter.

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2001-0463

около 25 лет назад

Directory traversal vulnerability in cal_make.pl in PerlCal allows remote attackers to read arbitrary files via a .. (dot dot) in the p0 parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0462

около 25 лет назад

Directory traversal vulnerability in Perl web server 0.3 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the URL.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0461

около 25 лет назад

template.cgi in Free On-Line Dictionary of Computing (FOLDOC) allows remote attackers to read files and execute commands via shell metacharacters in the argument to template.cgi.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0460

около 25 лет назад

Websweeper 4.0 does not limit the length of certain HTTP headers, which allows remote attackers to cause a denial of service (memory exhaustion) via an extremely large HTTP Referrer: header.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0459

около 25 лет назад

Buffer overflows in ascdc Afterstep while running setuid allows local users to gain root privileges via a long (1) -d option, (2) -m option, or (3) -f option.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0458

около 25 лет назад

Multiple buffer overflows in ePerl before 2.2.14-0.7 allow local and remote attackers to execute arbitrary commands.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0457

около 25 лет назад

man2html before 1.5-22 allows remote attackers to cause a denial of service (memory exhaustion).

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0456

около 25 лет назад

postinst installation script for Proftpd in Debian 2.2 does not properly change the "run as uid/gid root" configuration when the user enables anonymous access, which causes the server to run at a higher privilege than intended.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0455

около 25 лет назад

Cisco Aironet 340 Series wireless bridge before 8.55 does not properly disable access to the web interface, which allows remote attackers to modify its configuration.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0454

около 25 лет назад

Directory traversal vulnerability in SlimServe HTTPd 1.1a allows remote attackers to read arbitrary files via a ... (modified dot dot) in the HTTP request.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0453

около 25 лет назад

Directory traversal vulnerability in BRS WebWeaver HTTP server allows remote attackers to read arbitrary files via a .. (dot dot) attack in the (1) syshelp, (2) sysimages, or (3) scripts directories.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0452

около 25 лет назад

BRS WebWeaver FTP server before 0.64 Beta allows remote attackers to obtain the real pathname of the server via a "CD *" command followed by an ls command.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0451

около 25 лет назад

INDEXU 2.0 beta and earlier allows remote attackers to bypass authentication and gain privileges by setting the cookie_admin_authenticated cookie value to 1.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0450

около 25 лет назад

Directory traversal vulnerability in Transsoft FTP Broker before 5.5 allows attackers to (1) delete arbitrary files via DELETE, or (2) list arbitrary directories via LIST, via a .. (dot dot) in the file name.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2001-0449

около 25 лет назад

Buffer overflow in WinZip 8.0 allows attackers to execute arbitrary commands via a long file name that is processed by the /zipandemail command line option.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0448

больше 25 лет назад

Web configuration server in 602Pro LAN SUITE allows remote attackers to cause a denial of service via an HTTP GET HTTP request to the aux directory, and possibly other directories with legacy DOS device names.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0447

больше 25 лет назад

Web configuration server in 602Pro LAN SUITE allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long HTTP request containing "%2e" (dot dot) characters.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0446

больше 25 лет назад

IBM WCS (WebSphere Commerce Suite) 4.0.1 with Application Server 3.0.2 allows remote attackers to read source code for .jsp files by appending a / to the requested URL.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-0465

TurboTax saves passwords in a temporary file when a user imports investment tax information from a financial institution, which could allow local users to obtain sensitive information.

CVSS2: 4.6
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0464

Buffer overflow in websync.exe in Cyberscheduler allows remote attackers to execute arbitrary commands via a long tzs (timezone) parameter.

CVSS2: 10
7%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0463

Directory traversal vulnerability in cal_make.pl in PerlCal allows remote attackers to read arbitrary files via a .. (dot dot) in the p0 parameter.

CVSS2: 5
4%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0462

Directory traversal vulnerability in Perl web server 0.3 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the URL.

CVSS2: 5
4%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0461

template.cgi in Free On-Line Dictionary of Computing (FOLDOC) allows remote attackers to read files and execute commands via shell metacharacters in the argument to template.cgi.

CVSS2: 7.5
9%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0460

Websweeper 4.0 does not limit the length of certain HTTP headers, which allows remote attackers to cause a denial of service (memory exhaustion) via an extremely large HTTP Referrer: header.

CVSS2: 5
5%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0459

Buffer overflows in ascdc Afterstep while running setuid allows local users to gain root privileges via a long (1) -d option, (2) -m option, or (3) -f option.

CVSS2: 7.2
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0458

Multiple buffer overflows in ePerl before 2.2.14-0.7 allow local and remote attackers to execute arbitrary commands.

CVSS2: 7.5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0457

man2html before 1.5-22 allows remote attackers to cause a denial of service (memory exhaustion).

CVSS2: 5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0456

postinst installation script for Proftpd in Debian 2.2 does not properly change the "run as uid/gid root" configuration when the user enables anonymous access, which causes the server to run at a higher privilege than intended.

CVSS2: 7.5
6%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0455

Cisco Aironet 340 Series wireless bridge before 8.55 does not properly disable access to the web interface, which allows remote attackers to modify its configuration.

CVSS2: 7.5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0454

Directory traversal vulnerability in SlimServe HTTPd 1.1a allows remote attackers to read arbitrary files via a ... (modified dot dot) in the HTTP request.

CVSS2: 5
3%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0453

Directory traversal vulnerability in BRS WebWeaver HTTP server allows remote attackers to read arbitrary files via a .. (dot dot) attack in the (1) syshelp, (2) sysimages, or (3) scripts directories.

CVSS2: 5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0452

BRS WebWeaver FTP server before 0.64 Beta allows remote attackers to obtain the real pathname of the server via a "CD *" command followed by an ls command.

CVSS2: 5
3%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0451

INDEXU 2.0 beta and earlier allows remote attackers to bypass authentication and gain privileges by setting the cookie_admin_authenticated cookie value to 1.

CVSS2: 7.5
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0450

Directory traversal vulnerability in Transsoft FTP Broker before 5.5 allows attackers to (1) delete arbitrary files via DELETE, or (2) list arbitrary directories via LIST, via a .. (dot dot) in the file name.

CVSS2: 6.4
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0449

Buffer overflow in WinZip 8.0 allows attackers to execute arbitrary commands via a long file name that is processed by the /zipandemail command line option.

CVSS2: 4.6
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0448

Web configuration server in 602Pro LAN SUITE allows remote attackers to cause a denial of service via an HTTP GET HTTP request to the aux directory, and possibly other directories with legacy DOS device names.

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0447

Web configuration server in 602Pro LAN SUITE allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long HTTP request containing "%2e" (dot dot) characters.

CVSS2: 7.5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0446

IBM WCS (WebSphere Commerce Suite) 4.0.1 with Application Server 3.0.2 allows remote attackers to read source code for .jsp files by appending a / to the requested URL.

CVSS2: 5
1%
Низкий
больше 25 лет назад

Уязвимостей на страницу