Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 395 079

Количество 395 079

nvd логотип

CVE-2001-0424

около 25 лет назад

BubbleMon 1.31 does not properly drop group privileges before executing programs, which allows local users to execute arbitrary commands with the kmem group id.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0423

около 25 лет назад

Buffer overflow in ipcs in Solaris 7 x86 allows local users to execute arbitrary code via a long TZ (timezone) environmental variable, a different vulnerability than CAN-2002-0093.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0422

около 25 лет назад

Buffer overflow in Xsun in Solaris 8 and earlier allows local users to execute arbitrary commands via a long HOME environmental variable.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0421

около 25 лет назад

FTP server in Solaris 8 and earlier allows local and remote attackers to cause a core dump in the root directory, possibly with world-readable permissions, by providing a valid username with an invalid password followed by a CWD ~ command, which could release sensitive information such as shadowed passwords, or fill the disk partition.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2001-0420

больше 25 лет назад

Directory traversal vulnerability in talkback.cgi program allows remote attackers to read arbitrary files via a .. (dot dot) in the article parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0419

около 25 лет назад

Buffer overflow in shared library ndwfn4.so for iPlanet Web Server (iWS) 4.1, when used as a web listener for Oracle application server 4.0.8.2, allows remote attackers to execute arbitrary commands via a long HTTP request that is passed to the application server, such as /jsp/.

CVSS2: 7.5
EPSS: Средний
nvd логотип

CVE-2001-0418

около 25 лет назад

content.pl script in NCM Content Management System allows remote attackers to read arbitrary contents of the content database by inserting SQL characters into the id parameter.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0417

около 25 лет назад

Kerberos 4 (aka krb4) allows local users to overwrite arbitrary files via a symlink attack on new ticket files.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0416

около 25 лет назад

sgml-tools (aka sgmltools) before 1.0.9-15 creates temporary files with insecure permissions, which allows other users to read files that are being processed by sgml-tools.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0415

около 25 лет назад

REDIPlus program, REDI.exe, stores passwords and user names in cleartext in the StartLog.txt log file, which allows local users to gain access to other accounts.

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0414

больше 25 лет назад

Buffer overflow in ntpd ntp daemon 4.0.99k and earlier (aka xntpd and xntp3) allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long readvar argument.

CVSS2: 10
EPSS: Критический
nvd логотип

CVE-2001-0413

больше 25 лет назад

BinTec X4000 Access router, and possibly other versions, allows remote attackers to cause a denial of service via a SYN port scan, which causes the router to hang.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0412

больше 25 лет назад

Cisco Content Services (CSS) switch products 11800 and earlier, aka Arrowpoint, allows local users to gain privileges by entering debug mode.

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2001-0411

больше 25 лет назад

Reliant Unix 5.44 and earlier allows remote attackers to cause a denial of service via an ICMP port unreachable packet, which causes Reliant to drop all connections to the source address of the packet.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2001-0410

больше 25 лет назад

Buffer overflow in Trend Micro Virus Buster 2001 8.02 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long "From" header.

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2001-0409

больше 25 лет назад

vim (aka gvim) allows local users to modify files being edited by other users via a symlink attack on the backup and swap files, when the victim is editing the file in a world writable directory.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0408

больше 25 лет назад

vim (aka gvim) processes VIM control codes that are embedded in a file, which could allow attackers to execute arbitrary commands when another user opens a file containing malicious VIM control codes.

CVSS2: 5.1
EPSS: Низкий
nvd логотип

CVE-2001-0407

около 25 лет назад

Directory traversal vulnerability in MySQL before 3.23.36 allows local users to modify arbitrary files and gain privileges by creating a database whose name starts with .. (dot dot).

CVSS2: 4.6
EPSS: Низкий
nvd логотип

CVE-2001-0406

около 25 лет назад

Samba before 2.2.0 allows local attackers to overwrite arbitrary files via a symlink attack using (1) a printer queue query, (2) the more command in smbclient, or (3) the mput command in smbclient.

CVSS2: 2.1
EPSS: Низкий
nvd логотип

CVE-2001-0405

около 25 лет назад

ip_conntrack_ftp in the IPTables firewall for Linux 2.4 allows remote attackers to bypass access restrictions for an FTP server via a PORT command that lists an arbitrary IP address and port number, which is added to the RELATED table and allowed by the firewall.

CVSS2: 7.5
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-0424

BubbleMon 1.31 does not properly drop group privileges before executing programs, which allows local users to execute arbitrary commands with the kmem group id.

CVSS2: 7.2
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0423

Buffer overflow in ipcs in Solaris 7 x86 allows local users to execute arbitrary code via a long TZ (timezone) environmental variable, a different vulnerability than CAN-2002-0093.

CVSS2: 7.2
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0422

Buffer overflow in Xsun in Solaris 8 and earlier allows local users to execute arbitrary commands via a long HOME environmental variable.

CVSS2: 7.2
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0421

FTP server in Solaris 8 and earlier allows local and remote attackers to cause a core dump in the root directory, possibly with world-readable permissions, by providing a valid username with an invalid password followed by a CWD ~ command, which could release sensitive information such as shadowed passwords, or fill the disk partition.

CVSS2: 6.4
6%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0420

Directory traversal vulnerability in talkback.cgi program allows remote attackers to read arbitrary files via a .. (dot dot) in the article parameter.

CVSS2: 5
3%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0419

Buffer overflow in shared library ndwfn4.so for iPlanet Web Server (iWS) 4.1, when used as a web listener for Oracle application server 4.0.8.2, allows remote attackers to execute arbitrary commands via a long HTTP request that is passed to the application server, such as /jsp/.

CVSS2: 7.5
24%
Средний
около 25 лет назад
nvd логотип
CVE-2001-0418

content.pl script in NCM Content Management System allows remote attackers to read arbitrary contents of the content database by inserting SQL characters into the id parameter.

CVSS2: 5
3%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0417

Kerberos 4 (aka krb4) allows local users to overwrite arbitrary files via a symlink attack on new ticket files.

CVSS2: 2.1
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0416

sgml-tools (aka sgmltools) before 1.0.9-15 creates temporary files with insecure permissions, which allows other users to read files that are being processed by sgml-tools.

CVSS2: 2.1
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0415

REDIPlus program, REDI.exe, stores passwords and user names in cleartext in the StartLog.txt log file, which allows local users to gain access to other accounts.

CVSS2: 4.6
0%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0414

Buffer overflow in ntpd ntp daemon 4.0.99k and earlier (aka xntpd and xntp3) allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long readvar argument.

CVSS2: 10
92%
Критический
больше 25 лет назад
nvd логотип
CVE-2001-0413

BinTec X4000 Access router, and possibly other versions, allows remote attackers to cause a denial of service via a SYN port scan, which causes the router to hang.

CVSS2: 5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0412

Cisco Content Services (CSS) switch products 11800 and earlier, aka Arrowpoint, allows local users to gain privileges by entering debug mode.

CVSS2: 7.2
0%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0411

Reliant Unix 5.44 and earlier allows remote attackers to cause a denial of service via an ICMP port unreachable packet, which causes Reliant to drop all connections to the source address of the packet.

CVSS2: 5
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0410

Buffer overflow in Trend Micro Virus Buster 2001 8.02 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long "From" header.

CVSS2: 7.5
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0409

vim (aka gvim) allows local users to modify files being edited by other users via a symlink attack on the backup and swap files, when the victim is editing the file in a world writable directory.

CVSS2: 2.1
1%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0408

vim (aka gvim) processes VIM control codes that are embedded in a file, which could allow attackers to execute arbitrary commands when another user opens a file containing malicious VIM control codes.

CVSS2: 5.1
2%
Низкий
больше 25 лет назад
nvd логотип
CVE-2001-0407

Directory traversal vulnerability in MySQL before 3.23.36 allows local users to modify arbitrary files and gain privileges by creating a database whose name starts with .. (dot dot).

CVSS2: 4.6
2%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0406

Samba before 2.2.0 allows local attackers to overwrite arbitrary files via a symlink attack using (1) a printer queue query, (2) the more command in smbclient, or (3) the mput command in smbclient.

CVSS2: 2.1
1%
Низкий
около 25 лет назад
nvd логотип
CVE-2001-0405

ip_conntrack_ftp in the IPTables firewall for Linux 2.4 allows remote attackers to bypass access restrictions for an FTP server via a PORT command that lists an arbitrary IP address and port number, which is added to the RELATED table and allowed by the firewall.

CVSS2: 7.5
10%
Средний
около 25 лет назад

Уязвимостей на страницу